Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    NEW Package: freeRADIUS 2.x

    Scheduled Pinned Locked Moved pfSense Packages
    628 Posts 80 Posters 749.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      Nachtfalke
      last edited by

      @marcelloc:

      Nachtfalke,

      I'ts on the same repo as freeradius2.
      I'm not sure if it is a good option to install it automatically.
      Whe can think about on installing packages as gui options are selected.

      Yeah - better not by default. I will do it probably like I did with the bash package for mOTP. Will only be installed when enabled.

      I installed the samba package from your server on pfsense.
      Tried to start samba (didn't change anything on config):

      
      [2.0.1-RELEASE][admin@pfsense.localdomain]/root(5): /usr/local/etc/rc.d/samba onestart
      Removing stale Samba tdb files:  done
      Starting winbindd.
      /libexec/ld-elf.so.1: Shared object "libgssapi.so.2" not found, required by "winbindd"
      /usr/local/etc/rc.d/samba: WARNING: failed to start winbindd
      [2.0.1-RELEASE][admin@pfsense.localdomain]/root(6):
      
      

      PS: I think this tutorial will do the job:
      http://deployingradius.com/documents/configuration/active_directory.html

      @msi
      Virtual servers: If you do the job :)
      I thought about that in the past but I didn't find a way to put this all into a GUI. Probably someone with more experience on php and conding at all would do a better job. But I am not the guy for that  ;)

      1 Reply Last reply Reply Quote 0
      • marcellocM
        marcelloc
        last edited by

        @Nachtfalke:

        [2.0.1-RELEASE][admin@pfsense.localdomain]/root(5): /usr/local/etc/rc.d/samba onestart
        Removing stale Samba tdb files:  done
        Starting winbindd.
        /libexec/ld-elf.so.1: Shared object "libgssapi.so.2" not found, required by "winbindd"
        /usr/local/etc/rc.d/samba: WARNING: failed to start winbindd
        [2.0.1-RELEASE][admin@pfsense.localdomain]/root(6):

        well,
        maybe a cyrus-sasl-2.1.25_1,openldap-sasl-client-2.4.26, or heimdal dependence.

        I guess heimdal or cyrrus.

        Treinamentos de Elite: http://sys-squad.com

        Help a community developer! ;D

        1 Reply Last reply Reply Quote 0
        • Q
          qbik
          last edited by

          Hi,
          Does someone know if this package was compiled with DHCP option?

          Thanks

          1 Reply Last reply Reply Quote 0
          • marcellocM
            marcelloc
            last edited by

            @qbik:

            Does someone know if this package was compiled with DHCP option?

            I can't see this option on package make config.

            freeradius_2.png
            freeradius_2.png_thumb

            Treinamentos de Elite: http://sys-squad.com

            Help a community developer! ;D

            1 Reply Last reply Reply Quote 0
            • N
              Nachtfalke
              last edited by

              It is experimental and as far as I know you didn't compile experimental options.
              http://freeradius.org/features/dhcp.html

              1 Reply Last reply Reply Quote 0
              • marcellocM
                marcelloc
                last edited by

                @marcelloc:

                I can't see this option on package make config.

                Now I can see it as  experimental option  ;)

                Treinamentos de Elite: http://sys-squad.com

                Help a community developer! ;D

                1 Reply Last reply Reply Quote 0
                • Q
                  qbik
                  last edited by

                  Thank you for this information!

                  1 Reply Last reply Reply Quote 0
                  • N
                    Nachtfalke
                    last edited by

                    Updates pkg v1.6.6_3:

                    • Fixes: accounting scripts and small updates on the documentation. More infos in this thread:
                      http://forum.pfsense.org/index.php/topic,48404.0.html

                    Known bugs:

                    • When using "stop/start accounting on CP then "Amount of Time/Amount of Traffic" isn't working correctly.
                      http://redmine.pfsense.org/issues/2164

                    • When using CP + RADIUS + Vouchers and "reauthenticate every minute" is enabled then CP sends the voucher as username to RADIUS. This causes RADIUS to disconnect the "user/voucher" because of an unknown/wrong "username".
                      http://redmine.pfsense.org/issues/2155

                    • When stop/start accounting on CP is enabled than the syslog shows many "wrong order" or "Login found bot no logout detected". This seems to not affect the usage of RADIUS but it is not 100% correct.
                      http://redmine.pfsense.org/issues/2143

                    1 Reply Last reply Reply Quote 0
                    • Q
                      qbik
                      last edited by

                      Hi,
                      I want to do some test with DHCP on freeradius, I have a virtual machine where freeradius has DHCP enabled. I wanted to know if there is a way I can tell your package on installation to fetch my package file (from my server) and all dependencies will be treated as normal (from your server).

                      Thanks

                      1 Reply Last reply Reply Quote 0
                      • marcellocM
                        marcelloc
                        last edited by

                        @qbik:

                        Hi,
                        I want to do some test with DHCP on freeradius, I have a virtual machine where freeradius has DHCP enabled. I wanted to know if there is a way I can tell your package on installation to fetch my package file (from my server) and all dependencies will be treated as normal (from your server).

                        Thanks

                        No. what you can do is install freeradius2 package and then at console/ssh replace freeradius2 with your build using pkg_delete and pkg_add -r

                        Treinamentos de Elite: http://sys-squad.com

                        Help a community developer! ;D

                        1 Reply Last reply Reply Quote 0
                        • Q
                          qbik
                          last edited by

                          Thank you, this worked.

                          1 Reply Last reply Reply Quote 0
                          • marcellocM
                            marcelloc
                            last edited by

                            @qbik:

                            Thank you, this worked.

                            You can also report what features you enabled and how it improved your setup.

                            Treinamentos de Elite: http://sys-squad.com

                            Help a community developer! ;D

                            1 Reply Last reply Reply Quote 0
                            • N
                              Nachtfalke
                              last edited by

                              @marcelloc:

                              @qbik:

                              Thank you, this worked.

                              You can also report what features you enabled and how it improved your setup.

                              And which files you need to configure so we can think about building a GUI for that if possible :-)

                              1 Reply Last reply Reply Quote 0
                              • M
                                markuhde
                                last edited by

                                Is there a timeline for when this package will be updated to work with 2.1-DEVELOPMENT? Unfortunately, I need 2.1 for a client's system since their NIC isn't supported in 2.0.1 (RealTek 8111e), and I'm trying to get FreeRADIUS working so I can use WPA2-Enterprise. Thanks!

                                1 Reply Last reply Reply Quote 0
                                • marcellocM
                                  marcelloc
                                  last edited by

                                  @markuhde:

                                  Is there a timeline for when this package will be updated to work with 2.1-DEVELOPMENT? Unfortunately, I need 2.1 for a client's system since their NIC isn't supported in 2.0.1 (RealTek 8111e), and I'm trying to get FreeRADIUS working so I can use WPA2-Enterprise. Thanks!

                                  after installing gui, did you tried to install binaries on console?

                                  these posts maybe usefull for amd64 installs
                                  http://forum.pfsense.org/index.php/topic,43675.msg231974.html#msg231974
                                  http://forum.pfsense.org/index.php/topic,43675.msg232046.html#msg232046
                                  http://forum.pfsense.org/index.php/topic,43675.msg232220.html#msg232220
                                  http://forum.pfsense.org/index.php/topic,43675.msg232064.html#msg232064

                                  Treinamentos de Elite: http://sys-squad.com

                                  Help a community developer! ;D

                                  1 Reply Last reply Reply Quote 0
                                  • M
                                    markuhde
                                    last edited by

                                    It's an i386 install, because the graphics chipset (Intel Atom D2700) doesn't work properly in FreeBSD AMD64 (heck, it doesn't TOTALLY work properly in i386 there are missing characters, and amazingly, it doesn't even work in Windows 7 64-bit - there are no drivers from Intel).

                                    Sorry if I missed this but I'm not seeing it, if you still think it'd help, how would I go about reinstalling from the terminal then?

                                    1 Reply Last reply Reply Quote 0
                                    • marcellocM
                                      marcelloc
                                      last edited by

                                      @markuhde:

                                      Sorry if I missed this but I'm not seeing it, if you still think it'd help, how would I go about reinstalling from the terminal then?

                                      Maybe the package has installed missing libs, put as whe do not have .pbi package for freeradius2, you need to enable ssh/go to console and type

                                      pkg_add -r http://e-sac.siteseguro.ws/packages/8/All/freeradius-2.1.12.tbz
                                      pkg_add -r http://e-sac.siteseguro.ws/packages/8/All/openldap-sasl-client-2.4.26.tbz

                                      Treinamentos de Elite: http://sys-squad.com

                                      Help a community developer! ;D

                                      1 Reply Last reply Reply Quote 0
                                      • M
                                        markuhde
                                        last edited by

                                        Thank you! I'll try it out ASAP. Will this work through a firmware upgrade from the GUI or will it need to be re-done every time a new snapshot is loaded?

                                        1 Reply Last reply Reply Quote 0
                                        • marcellocM
                                          marcelloc
                                          last edited by

                                          @markuhde:

                                          Thank you! I'll try it out ASAP. Will this work through a firmware upgrade from the GUI or will it need to be re-done every time a new snapshot is loaded?

                                          Every firmware update, all packages are reinstalled, so I think you need to do this too.

                                          Treinamentos de Elite: http://sys-squad.com

                                          Help a community developer! ;D

                                          1 Reply Last reply Reply Quote 0
                                          • M
                                            markuhde
                                            last edited by

                                            Okay, thanks. It'll probably be Monday morning when I'm up at the campground where this install is, and I'll give it a whirl. Do a firmware update, then try to get FreeRADIUS and WPA2-Enterprise up and running there.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.