(RADIATOR) logging failed auth with postauthhook ?

Hugh Irvine hugh at open.com.au
Thu Feb 20 20:35:10 CST 2003


Hello Adrian -

I think I would be inclined to use a <Log SQL> clause, possibly in 
conjunction with a PacketTrace parameter.

See section 6.12 in the Radiator 3.5 reference manual ("doc/ref.html").

regards

Hugh


>
> Hi,
>
> I'm trying to set up a postauthhook.pl script
> that puts useful about login attempts into a
> mysql DB.
>
> I've currently got is showing successful connections
> and disconnections (and the reasons from
> "Acct-Terminate-Cause"),  but can't get it to
> display failed authentication attempts at all
> because the authentication messages aren't available
> as attributes to the hook files..
>
> Username's that don't exist don't show anything
> (radiator doesn't show any debugging info) and
> passwords that don't match valid username's are
> shown in debugging only..
>
> My Handler config is below.
>
> Does anyone know how I can get bad login attempts
> logged with the postauthhook ?
>
> Regards,
> Adrian.
>
>
>
> <Handler>
>
> 	PreAuthHook file:"%D/dsl_prehook.pl"
>
> 	RewriteUsername s/^([^@]+).*/$1/
> 	AuthByPolicy ContinueWhileAccept
> 	AuthBy CheckUsers
> 	AuthBy AllocateIPAddress
> 	AcctLogFileName /usr/local/lib/radius/acct/dsl-%Y-%m-%d
> 	AuthLog SQLLogger
> 	SessionDatabase SQLSDB
> 	PostAuthHook file:"%D/dsl_posthook.pl"
> </Handler>
>
> -------------------------------------------------------
>
> -- 
> Mike McCauley                               mikem at open.com.au
> Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
> 24 Bateman St Hampton, VIC 3188 Australia   http://www.open.com.au
> Phone +61 3 9598-0985                       Fax   +61 3 9598-0955
>
> Radiator: the most portable, flexible and configurable RADIUS server
> anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
> Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS,
> TTLS, PEAP etc on Unix, Windows, MacOS etc.
>
> ===
> Archive at http://www.open.com.au/archives/radiator/
> Announcements on radiator-announce at open.com.au
> To unsubscribe, email 'majordomo at open.com.au' with
> 'unsubscribe radiator' in the body of the message.
>
>

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows 95/98/2000, NT, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.

===
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list