freeradius error discarding duplicate request from client Schaghticoke New York

Address 208 Wilbur Ave, Greenwich, NY 12834
Phone (518) 409-1109
Website Link
Hours

freeradius error discarding duplicate request from client Schaghticoke, New York

And we balance the wireless controllers > > across those. > > As the university I used to work at, we were handling a similar load with two Xserve G5s, but The "digest" and other modules will (should) set the Auth-Type for themselves in the authorize section, and only do it if it *is* a digest (or other) request. - List info/subscribe/unsubscribe? There is one other point about freeradius and Kerberos performance that I forgot to make earlier, which may be of interest to other sites. Posted by: listserv-anon on August 23, 2012 We used to have a setup where most all of our authentication went against 1 or two servers.

If you want this code to be included in function releases please submit the patches against the master branch (3.0). You will need to add 'cache = no' to your existing krb5 configuration file. If we'd known that earlier, we'd have instead > purchased machines with fewer faster cores. Please don't post to mailing lists using HTML, and do everyone a favor, get rid off that yellow dot background from your email template. - List info/subscribe/unsubscribe?

In what will become 3.0 this is already set in the default configuration file. Conferences & Events Annual Conference EDUCAUSE Connect Events EDUCAUSE Institute Programs ELI Annual Meeting ECAR Annual Meeting NERCOMP Annual Conference Security Professionals Conference Enterprise IT Summit Online Events Webinars/Online Events Which computer configuration is recommended for my needs: Freeradius with Mysql for about 1000 users that connects to network using wireless connections? If it is misconfigured what can happen? > > Don't change max_request_time or cleanup_delay.

Posted by: listserv-anon on September 5, 2012 Ok, we all have different usage patters and number of users. No databases. Top natanielklug Frequent Visitor Topic Author Posts: 94 Joined: Mon Apr 02, 2007 6:09 pm Reputation: 0 Location: Cascavel/PR/Brasil Re: Freeradius and MySQL 0 Quote #6 Thu May 09, 2013 Version: 7.1.394 / Virus Database: 268.10.4/401 - Release Date: 2006-07-26 -- No virus found in this outgoing message.

It IS there. > Well, it makes sense :) After real digest message (INVITE request from > OpenSer), our script in OpenSer sends special request for extra processing. You said "digest message without digest", which is a contradiction. does using 'kinit' work?  does using \ ntlm_auth work?

alan

-
List info/subscribe/unsubscribe? I do not set Auth-Type, simply in config I have set > auth.

Without more details as to your configuration, we can only guess, but maybe indices on key SQL tables and/or optimising the queries? - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html Re: Error: Discarding duplicate request 2006-07-28 Thread Phil Mayers Aleksandar Stojilkovic wrote: Aleksandar Stojilkovic wrote: Hello, My log is full of this kind of errors: Wed Jul 26 02:55:54 So we have a massive radacct1 table. It has 20 Gb size and a lot of rows.

Stop arguing, and go check it. > I do not need authorize message but only I have to send some values to > OpenSer - this non-digest (which seems to be This is normally caused by a slowly-responding database (e.g. this error message suggests that you've got a slow backend somewhere - be that ldap, sql or even a bit of perl - Reply message - From: Mike Diggins [email protected] Date: So the only > > way to scale the performance of the RADIUS infrastructure is to > > deploy more servers (they don't have to by physical, you can install >

Login incorrect: [[hidden email]/] (from client erver1 port 0) Sending Access-Reject of id 181 to 153.19.130.250 port 45740 -----Original Message----- From: freeradius-users-bounces+biuro=[hidden email] [mailto:freeradius-users-bounces+biuro=[hidden email] g] On Behalf Of You need to speed the backend up, not have the radius server wait longer. Alan DeKok. -- http://deployingradius.com - The web site of the book http://deployingradius.com/blog/- The blog - List info/subscribe/unsubscribe? That would give it an > advantage.

Or maybe it is a possibilities to accept this special > message which is digest but has no digest attributes? Hello So if I have 274 routers connected to Hotspot Radius server, I need to put in max-request: 70144 (256 queries * number of clients) Is this correct? See http://www.freeradius.org/list/users.html Dennis Skinner-2 Reply | Threaded Open this post in threaded view ♦ ♦ | Report Content as Inappropriate ♦ ♦ Re: Error: Discarding duplicate request Aleksandar Stojilkovic wrote: Grand tidbits Here I'll stuff stuff I want to share.

See http://www.freeradius.org/list/users.html biuro Reply | Threaded Open this post in threaded view ♦ ♦ | Report Content as Inappropriate ♦ ♦ Re: How to handle non digest messeg if Auth-Type If so, is upgrading FreeRadius likely to resolve that (not knowing exactly what the problem is). Make "the thing" respond >> quicker. Since most requests should be handled in MUCH less than a second, it shows a serious problem. > I get this every time a session expires (Session-Timeout = 84600) every >

That makes no sense to me. If not, i'll disable caching by default and add a note > to the configuration. That *was* you setting Auth-Type to Digest. > >> >> But now I've got following message if non-digest message arrive: >> >> rad_recv: Access-Request packet from host 153.19.130.250:46963, id=190, >> length=80 So can we do a quick check of what sort of authentications our servers are doing per second.

If you want this code to be included in function releases please submit the patches against the master branch (3.0). > > If the module uses long lived connection handles, it Awful HTML at that... >> >> This is normally caused by a slowly-responding database (e.g. >> SQL, LDAP) or upstream proxy server. See http://www.freeradius.org/list/users.html [prev in list] [next in list] [prev in thread] [next in thread] Configure | About | News | Addalist | SponsoredbyKoreLogic FreeRADIUS › Users Search everywhere only in Additionally the control thread is also the only one that can insert packets into the request queue, though any worker can pick requests off it. >>> One of our staff members

I can set it up to 32 Gb of RAM but nothing of that solved the problem. cat radius.log-[DATE]| tr -s " " | cut -d " " -f 4 | uniq -c | sort -n | tail -10 I did this for yesterday (first day of classes) I've commented line in users file #DEFAULT Auth-Type := Digest But now I've got following message if non-digest message arrive: rad_recv: Access-Request packet from host 153.19.130.250:46963, id=190, length=80 There are two problems with the freeradius code that cause performance problems with a Kerberos backend: 1) It doesn't disable the replay cache, which isn't needed for password verification operations (as

Maybe you know ? Make the thing respond quicker. As the university I used to work at, we were handling a similar load with two Xserve G5s, but we were using LDAP and not Kerberos. > > We actually implemented Free forum by Nabble Edit this page Skip to content Search… Search Quick links Unanswered topics Active topics Search The team Active topics Active topics Forum Community discussions Search… Search Quick

Responses to the two questions above would be appreciated … thanks!! -- Jim Gogan / Univ of North Carolina at Chapel Hill ********** Participation and subscription information for this