Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PFsense 2.4.4 FreeRadius Mac Address Authentication Qouta

    Scheduled Pinned Locked Moved Captive Portal
    pfsense
    12 Posts 4 Posters 3.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GrimsonG
      Grimson Banned
      last edited by

      Report it here: https://redmine.pfsense.org with as much details as you can.

      S 1 Reply Last reply Reply Quote 0
      • GertjanG
        Gertjan
        last edited by

        Hi,

        I'm not using the "Mac Address Authentication" but qoutas seem to work for e :

        Sep 21 21:50:49 	root 		FreeRADIUS: User 111 has used 398 MB of 2048 MB daily allotted traffic. The login request was accepted.
        

        a minute later :

        Sep 21 21:51:51 	root 		FreeRADIUS: User 111 has used 404 MB of 2048 MB daily allotted traffic. The login request was accepted.
        

        Thus: quotas are working their way up.
        Didn't see what happened when they reach the end, that didn't arrived yet.

        What do you mean with :
        @stephenkwabena said in PFsense 2.4.4 FreeRadius Mac Address Authentication Qouta:

        "No logs to display."

        You flushed the logs ?

        Running the RC :
        2.4.4-RC (amd64)
        built on Tue Sep 18 17:52:29 EDT 2018
        FreeBSD 11.2-RELEASE-p3

        No "help me" PM's please. Use the forum, the community will thank you.
        Edit : and where are the logs ??

        S 2 Replies Last reply Reply Quote 0
        • S
          stephenkwabena @Gertjan
          last edited by

          @gertjan

          Yes

          1 Reply Last reply Reply Quote 0
          • S
            stephenkwabena @Grimson
            last edited by

            @grimson
            Ok I will do that. Thanks

            1 Reply Last reply Reply Quote 0
            • S
              stephenkwabena @Gertjan
              last edited by

              @gertjan
              Please can show me your configuration?

              1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan
                last edited by

                Check here https://www.youtube.com/watch?v=nJ3NzU_7xd0 : 38 min 0 sec.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                1 Reply Last reply Reply Quote 0
                • F
                  free4 Rebel Alliance
                  last edited by free4

                  Quotas in FreeRadius pfSense package are working for me, both using MAC Address authentication and username/password authentication.

                  @stephenkwabena said

                  I assigned 1024MB to a User in the FreeRadius and the User used more the 1024MB assigned to him.

                  I may know the reason why this is happening : is "Reauthenticate users" disabled in your captive portal configuration ?

                  In order to use quota within the pfSense package,

                  • "Reauthenticate users" must be enabled on the captive portal
                  • Radius accounting must be enabled (using "stop/start (Freeradius)" ) on the captive portal
                  • Radius accounting must be also enabled on the FreeRadius package (in the "Interface" tab)
                  • A cron must be set up using the cron package to reset the daily counters
                  GertjanG 1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @free4
                    last edited by Gertjan

                    I hadd some details and examples :

                    @free4 said in PFsense 2.4.4 FreeRadius Mac Address Authentication Qouta:

                    • "Reauthenticate users" must be enabled on the captive portal

                    Normal. A the doc states - or the video.

                    • Radius accounting must be enabled (using "stop/start (Freeradius)" ) on the captive portal

                    Or "Interim", which I use, and work s fine.

                    • Radius accounting must be also enabled on the FreeRadius package (in the "Interface" tab)

                    Yep. I've these (maybe over complete, but it works so good this way) :
                    0_1538406452924_40e49891-ee11-429a-8b2a-ae67b055d7c0-image.png

                    • A cron must be set up using the cron package to reset the daily counters

                    Correct.
                    Here it is :
                    0_1538406600411_a1c7021a-7d31-46f3-be72-c3392c56c9c9-image.png

                    The first 3 lines : the daily/weekly/monthly/ reset. Choose your hour of reset.
                    Line 4 : private mixture, (192.168.2.1 is my NAS) to delete the overwhelming logs of FreeRadius - if you forget this one, and ask FreeRdius to log, and forget about it, then your pfSense will explode ... Btw : test this line by hand before you unleash a wild "rm" on your system.

                    Have a look at /var/log/radacct/datacounter/daily/ - see the files yourself. That makes undderstanding things much faster.
                    Use the FreeRadius config files, these scripts here : /usr/local/etc/raddb/scripts ... and then you know how the guy works, which is great if you want to debug something (add some log lines).

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    S 1 Reply Last reply Reply Quote 0
                    • S
                      stephenkwabena @Gertjan
                      last edited by

                      @gertjan Please can you send me the commands here and more directive

                      GertjanG 1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan @stephenkwabena
                        last edited by

                        @stephenkwabena

                        No actual commands.
                        I was using a mouse.

                        If you don't know how to look at a file :

                        @gertjan said in PFsense 2.4.4 FreeRadius Mac Address Authentication Qouta:

                        Have a look at /var/log/radacct/datacounter/daily/ - see the files yourself. That makes under stand things much faster.

                        or what it means, then IMHO : it's not worth looking.

                        You could use the pfSense GUI, or, go for a free program like WinSCP.

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.