Questions tagged [freeradius]

FreeRADIUS is an open source RADIUS server

FreeRADIUS is an open source RADIUS (Remote Authentication Dial-In User Service) server. It implements AAA: Authentication, Authorization, and Accounting. It is very flexible and has many modules. It supports many backend databases such MySQL, PostgreSQL or Redis for retrieving/saving AAA data.

Official website.

261 questions
3
votes
2 answers

TLS from Radius for Wifi is rejected by Win7

We do have the following Setup at our company Synology RS812+ hosting LDAP, RADIUS, DNS (Version DSM 5.0-4458 Update 2) 2*Cisco Wifi APs WAP561 (Firmware 1.0.3.4) Cisco Router ISA500 (Firmware 1.2.19) What we want to have is basically authenticate…
pfried
  • 83
  • 1
  • 10
3
votes
1 answer

Howto change the default radius logging path for accounting?

I have freeradius 2.1.12+dfsg-1.2 working and logging accounting packets to /var/log/freeradius/radacct/detail-20130401. However I need to tail the log and I want to ideally tail a single log file and manage the logs with logrotate. What do I change…
hendry
  • 667
  • 2
  • 10
  • 23
3
votes
1 answer

Debian build the freeradius package with unixodbc support

Here is what I am trying to achieve, we want to install freeradius using a Microsoft SQL backend. I read on the internet that we need to achieve this goal using the unixodbc driver. I am able to set up the unixodbc driver from apt-get and if I…
drivard
  • 407
  • 1
  • 6
  • 17
3
votes
1 answer

Reload Freeradius clients without restart the service

Is there a way to reload the Freeradius clients configuration without restarting the service? I'm using: Ubuntu Server 12 Freeradius 2.1.10 MySQL v5.5.20 (I'm storing the clients in the "nas" table)
PachinSV
  • 193
  • 1
  • 1
  • 9
3
votes
2 answers

Freeradius authentication failed for unknown reason

I followed this instruction to force freeradius to use mysql database. and run freeradius in debug mod. but it rejects all authentication. mysql database : mysql> select * from radcheck; +----+----------+-----------+----+---------+ | id | username |…
Moein Hosseini
  • 241
  • 3
  • 6
  • 13
3
votes
1 answer

Auth-Type :- Reject in RADIUS users file matches inner tunnel request but sends Access-Accept

I have WPA2 802.11x EAP authentication setup using FreeRADIUS 2.1.8 on Ubuntu 10.04.4 talking to OpenLDAP, and can successfully authenticate using PEAP/MSCHAPv2, TTLS/MSCHAPv2 and TTLS/PAP (both via the AP and using eapol_test). I am now trying to…
mgorven
  • 30,036
  • 7
  • 76
  • 121
3
votes
2 answers

How to encrypt user password in Freeradius

I recently set up a freeradius server and would like to change the user password that is presently in cleartext to encrypted in the /etc/freeradius/3.0/users file. This is what it looks like on the server. When I authenticate on the server, I can…
wallacex
  • 37
  • 1
  • 2
2
votes
0 answers

pfSense: config with daloRadius (freeRadius) to setup download quota limitation

I have pfsense and daloRadius(running freeRadius inside) up and running, I successfully configured radius parameters on pfSense and the NAS on daloRadius and they can talk to each other. I am able to create users from daloRadius and authenticate…
Xsmael
  • 171
  • 1
  • 10
2
votes
1 answer

EAP-TLS: How to verify a p12 key with freeradius?

I installed a Radius server with a EAP-TLS only configuration. I have a client.p12 file that is supposed to contain both the root-CA and the client certificate. I added the p12…
Alexis
  • 152
  • 1
  • 12
2
votes
0 answers

Wired 802.1x on Windows 10 1803 isn't utilizing cache

So I’ve been trying to resolve 802.1x Wired authentication issues for quite some time now with limited success. The environment is based on Server 2012, Enterasys NAC using EAP-TLS1.2, with a relatively simple PKI infrastructure. We are running…
2
votes
0 answers

FreeRADIUS with Let's Enrypt Certificate (trusted connection without provisioning?)

I have a FreeRADIUS server set up for PEAP/MSCHAPv2 connections with an SQL user backend. On that server, I have set up a Let's encrypt certificate for domain access.example.org. This certificate is valid, both if used for SSL (e.g. for a guest…
PiMaker
  • 151
  • 1
  • 5
2
votes
2 answers

FreeRadius return User Groups in Class field

I use strongSwan to authenticate against FreeRadius which it does but now I need FreeRadius to return the user's groups in the Class field so they can be checked by strongSwan [1]. I'm using winbind and ntlm_auth on freeradius to authenticate users,…
Christian
  • 746
  • 3
  • 13
  • 30
2
votes
1 answer

smb fails to start on centos7 radius server

I have a working radius server that auths connections to a PDC AD server. I wanted to create another one so that I can fail over on the firewall when needed. I created a second server using the same configs as the first. When I have the following in…
IRBiddlecombe
  • 21
  • 1
  • 3
2
votes
0 answers

Freeradius multi-factor auth with LDAP and Yubikey

I just set up a freeradius server and would like to be able to authenticate using both the password of a ldap user and the yubico otp generated from their yubikey. It is working using the ldap password out of the box without any configuration, but I…
eli0T
  • 120
  • 11
2
votes
1 answer

Setup FreeRADIUS on windows

Can any one suggest where to download "FreeRADIUS" server (2.2.3) .exe for windows? I tried downloading 1.1.7 from Downloads | FreeRADIUS. It works fine but it doesn't work for TLS security. The WIFI module provider suggested that download 2.2.3…
GBD
  • 23
  • 1
  • 3
1
2
3
17 18