Free radius installation
José Campos
jjscampos at gmail.com
Mon Jan 25 11:08:14 CET 2010
Hi,
I've SELINUX=disabled.
Atentamente,
José Campos
-----Mensagem original-----
De: freeradius-users-bounces+jjscampos=gmail.com at lists.freeradius.org
[mailto:freeradius-users-bounces+jjscampos=gmail.com at lists.freeradius.org]
Em nome de Alan Buxey
Enviada: segunda-feira, 25 de Janeiro de 2010 9:19
Para: FreeRadius users mailing list
Assunto: Re: Free radius installation
Hi,
> > not really - did you read what I wrote? How can you do a state check
> > on what is a stateless protocol?
>
> I think you can still do state checks for UDP:
there are ways and means - sure - but in the first throes of
getting some test traffic to the daemon, surely the easiest thing
is to just allow UDP port 1812 and 1813 traffic and THEN start learning
what firewall flags work with the traffic.
alternatively, SElinux is getting in the way (if its enabled)
'sestatus'
or
'getenforce'
and try setting it to permissive - just for testing! -
'setenforce 0'
if thats the case, then put the enforcing back and then check the
secure/audit
logs to see what/why/how its failing and put the right SELinux rules into
place to deal with the requirements of the daemon. plenty of online
resources
dealing with SELinux and how to configure/check it.
alan
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
More information about the Freeradius-Users
mailing list