]>
git.ipfire.org Git - thirdparty/freeradius-server.git/log
Matthew Newton [Thu, 2 May 2024 16:12:51 +0000 (17:12 +0100)]
docker: bit more needed for ubuntu24
Alan T. DeKok [Mon, 20 May 2024 17:40:19 +0000 (13:40 -0400)]
note recent changes
Alan T. DeKok [Mon, 20 May 2024 15:07:54 +0000 (11:07 -0400)]
don't create too many random things
Nick Porter [Mon, 20 May 2024 08:30:42 +0000 (09:30 +0100)]
Ensure yum is installed on Rocky 9
Once CentOS 7 goes EoL, we can switch to dnf
Alan T. DeKok [Sun, 19 May 2024 13:47:59 +0000 (09:47 -0400)]
unify cleanup code
Alan T. DeKok [Sun, 19 May 2024 13:44:03 +0000 (09:44 -0400)]
typo. Fixes #5321
Alan T. DeKok [Sat, 18 May 2024 23:25:13 +0000 (19:25 -0400)]
add missing " at end
Alan T. DeKok [Sat, 18 May 2024 20:50:56 +0000 (16:50 -0400)]
allocate instance data even if the module doesn't need it
which lets the rest of the distinguish virtual attributes from
typos in xlat functions
Alan T. DeKok [Sat, 18 May 2024 20:50:17 +0000 (16:50 -0400)]
fix typo.
We loop until the content is non-space, not while the ptr is !NULL
Alan T. DeKok [Wed, 15 May 2024 12:07:57 +0000 (08:07 -0400)]
set default to quiet compiler
Alan T. DeKok [Wed, 15 May 2024 12:01:36 +0000 (08:01 -0400)]
fix data types for CONF_PARSER
Alan T. DeKok [Wed, 15 May 2024 11:48:45 +0000 (07:48 -0400)]
make fr_ev_max_fds configurable
but we're still limited by FD_SETSIZE, which is 1024 on most
systems.
Alan T. DeKok [Wed, 15 May 2024 11:37:17 +0000 (07:37 -0400)]
make maximum number of FDs configurable
Alan T. DeKok [Tue, 14 May 2024 15:50:45 +0000 (11:50 -0400)]
add ecdh_curve example configuration
Nick Porter [Thu, 2 May 2024 10:56:04 +0000 (11:56 +0100)]
Add `lookforward_steps` option to `rlm_totp`
Nick Porter [Thu, 2 May 2024 10:53:50 +0000 (11:53 +0100)]
Formatting
Nick Porter [Tue, 30 Apr 2024 08:36:12 +0000 (09:36 +0100)]
bump github action/{upload,download}-artifact
Except for ci-rpm where centos-7 is too old for node > 16
Nick Porter [Tue, 30 Apr 2024 07:49:33 +0000 (08:49 +0100)]
Add Ubuntu 24 to deb packaging tests
Nick Porter [Mon, 29 Apr 2024 17:16:30 +0000 (18:16 +0100)]
Failed authentications should return `reject` not `fail`
Nick Porter [Mon, 29 Apr 2024 09:05:42 +0000 (10:05 +0100)]
Add Ubuntu 24 to crossbuild
Nick Porter [Mon, 29 Apr 2024 09:02:31 +0000 (10:02 +0100)]
Tidy RHEL build
Removing references to obsolete RHEL versions
Matthew Newton [Tue, 23 Apr 2024 10:56:18 +0000 (11:56 +0100)]
enable crossbuild github action
Matthew Newton [Tue, 23 Apr 2024 08:58:22 +0000 (09:58 +0100)]
bump github action/{checkout,cache}
to get rid of github node 16 warnings, except on ci-rpm centos:7 which is too
old for node>16
Matthew Newton [Mon, 22 Apr 2024 15:49:27 +0000 (16:49 +0100)]
crossbuild: now need yubikey library for tests
Matthew Newton [Thu, 14 Mar 2024 14:57:37 +0000 (14:57 +0000)]
crossbuild: bump antora version and other fixes
- centos7 and ubuntu18 don't support node>16
- no longer explicitly install npm on debian12
Nick Porter [Tue, 23 Apr 2024 08:06:16 +0000 (09:06 +0100)]
All current platforms have MySQL >= 5.5
Alan T. DeKok [Mon, 15 Apr 2024 15:42:39 +0000 (11:42 -0400)]
build on Solaris, too. Fixes #5313
Alan T. DeKok [Fri, 12 Apr 2024 18:45:53 +0000 (14:45 -0400)]
note recent changes
Alan T. DeKok [Fri, 12 Apr 2024 16:04:01 +0000 (12:04 -0400)]
better handle re-enabling connection are TLS connection check
Alan T. DeKok [Fri, 12 Apr 2024 11:21:02 +0000 (07:21 -0400)]
add / fix some debug messages
Nick Porter [Mon, 1 Apr 2024 16:08:38 +0000 (17:08 +0100)]
Typo
Nick Porter [Mon, 1 Apr 2024 15:22:34 +0000 (16:22 +0100)]
rlm_sql_freetds: handle returned NULL column values
These don't update the results buffer - so zero it out during allocation.
Nick Porter [Mon, 1 Apr 2024 14:30:24 +0000 (15:30 +0100)]
sql_map does not use the dialect option
Alan T. DeKok [Wed, 13 Mar 2024 14:00:36 +0000 (10:00 -0400)]
better handle all actions. Fixes #5308
Alan T. DeKok [Wed, 13 Mar 2024 14:00:24 +0000 (10:00 -0400)]
fix UNUSED for radius/1.1
Nick Porter [Tue, 27 Feb 2024 15:55:14 +0000 (15:55 +0000)]
Correctly cast to print hex value of characters
Alan T. DeKok [Mon, 4 Mar 2024 21:02:15 +0000 (16:02 -0500)]
add necessary backslash. Fixes #5301
Alan T. DeKok [Mon, 4 Mar 2024 11:27:36 +0000 (06:27 -0500)]
set limit on AWS health checks. Closes #5300
Nick Porter [Thu, 22 Feb 2024 19:43:07 +0000 (19:43 +0000)]
Correctly parent cache entry
Alan T. DeKok [Sat, 17 Feb 2024 12:07:52 +0000 (07:07 -0500)]
use snprintf
Alan T. DeKok [Fri, 16 Feb 2024 13:42:35 +0000 (08:42 -0500)]
add "check for radiusv11" flag
Alan T. DeKok [Fri, 16 Feb 2024 13:01:12 +0000 (08:01 -0500)]
set radiusv11 for replies, too
Nick Porter [Thu, 15 Feb 2024 16:43:29 +0000 (16:43 +0000)]
Less noisy debug
Alan T. DeKok [Thu, 15 Feb 2024 14:47:36 +0000 (09:47 -0500)]
allow "ours" for inner tunnel proxied requests. Helps with #5288
Nick Porter [Wed, 14 Feb 2024 14:50:41 +0000 (14:50 +0000)]
Remove Centos 8 from CI
Some repos appear to be going, Centos Stream 8 is nearly EoL, and tests
are being run on Rocky 8.
Nick Porter [Wed, 14 Feb 2024 14:28:55 +0000 (14:28 +0000)]
SQLite doesn't have GREATEST - use MAX instead
Alan T. DeKok [Fri, 9 Feb 2024 14:10:35 +0000 (09:10 -0500)]
as sent via email
Nick Porter [Tue, 6 Feb 2024 10:08:26 +0000 (10:08 +0000)]
Ubuntu 18.04 is EoL
Nick Porter [Tue, 6 Feb 2024 09:16:29 +0000 (09:16 +0000)]
Run relevant post-proxy Fail-* section on CoA/PoD timeout
Nick Porter [Mon, 5 Feb 2024 18:35:11 +0000 (18:35 +0000)]
More helpful error message
Nick Porter [Mon, 5 Feb 2024 18:34:30 +0000 (18:34 +0000)]
No results is not an error
Nick Porter [Mon, 5 Feb 2024 15:57:10 +0000 (15:57 +0000)]
Improved vscode settings
Alan T. DeKok [Thu, 1 Feb 2024 19:10:14 +0000 (14:10 -0500)]
initialize entry
Alan T. DeKok [Thu, 1 Feb 2024 18:56:10 +0000 (13:56 -0500)]
cleanups
Alan T. DeKok [Thu, 1 Feb 2024 17:20:50 +0000 (12:20 -0500)]
set "ours" properly. Hopefully the last commit
Alan T. DeKok [Thu, 1 Feb 2024 16:51:07 +0000 (11:51 -0500)]
set ours here, too
Alan T. DeKok [Thu, 1 Feb 2024 16:42:15 +0000 (11:42 -0500)]
set "ours" if we create State
Alan T. DeKok [Thu, 1 Feb 2024 15:47:45 +0000 (10:47 -0500)]
better differentiate State from different home servers
Alan T. DeKok [Thu, 1 Feb 2024 15:41:11 +0000 (10:41 -0500)]
only mangle our entries
Alan T. DeKok [Thu, 1 Feb 2024 15:39:32 +0000 (10:39 -0500)]
distinguish our state from others
Alan T. DeKok [Thu, 1 Feb 2024 15:26:16 +0000 (10:26 -0500)]
move state calculation to common function.
Alan T. DeKok [Thu, 1 Feb 2024 14:33:17 +0000 (09:33 -0500)]
revert "ensure that proxies don't mangle State". helps with #5288
However, we still need a fix for the underlying issue of proxies
which are reported to mangle the State attribute
Nick Porter [Thu, 1 Feb 2024 14:17:42 +0000 (14:17 +0000)]
No need for begin / commit for independent UPDATE queries
Whilst Oracle had these set to "COMMIT", queries are actually run with
OCI_COMMIT_ON_SUCCESS so no need for a separate COMMIT
Alan T. DeKok [Wed, 31 Jan 2024 13:07:18 +0000 (08:07 -0500)]
might as well document this clearly after 25 years
Alan T. DeKok [Mon, 29 Jan 2024 19:29:57 +0000 (14:29 -0500)]
update docs
Nick Porter [Mon, 29 Jan 2024 16:39:55 +0000 (16:39 +0000)]
Use correct sqlite syntax for id column
Causes id to refer to internal ROWID column
Arran Cudbard-Bell [Fri, 26 Jan 2024 19:51:56 +0000 (13:51 -0600)]
Use the same encoding for binary data as strings
Closes #5285
Nick Porter [Thu, 18 Jan 2024 17:03:06 +0000 (17:03 +0000)]
sqlite3_prepare functions prepare only the next query in the string
and return a pointer to the character after what was parsed - so this
provides a more robust method of parsing the SQL to execute than simply
looking for ';' followed by '\n' or '\0'.
E.g. if there are comments which end the line with a ';' that fails with
the old parsing.
In addition, if there were ';' in data inside a string, the previous
parsing would have thrown away the portion of the string before that.
Nick Porter [Fri, 19 Jan 2024 10:35:16 +0000 (10:35 +0000)]
Remove un-used module option
Alan T. DeKok [Thu, 18 Jan 2024 15:13:59 +0000 (10:13 -0500)]
manual merge of #5208 with fixes
Alan T. DeKok [Wed, 17 Jan 2024 02:19:24 +0000 (21:19 -0500)]
lowercase. Fixes #5267
Alan T. DeKok [Mon, 15 Jan 2024 13:48:34 +0000 (08:48 -0500)]
note recent changes
Alan T. DeKok [Mon, 15 Jan 2024 13:47:20 +0000 (08:47 -0500)]
add "-t timeout" to radsniff
Manual port of
e457e70d9f4e
Alan T. DeKok [Thu, 11 Jan 2024 12:04:56 +0000 (07:04 -0500)]
additional documentation for mschap testing
Alan T. DeKok [Thu, 11 Jan 2024 11:48:59 +0000 (06:48 -0500)]
shut up static analysis
Alan T. DeKok [Thu, 11 Jan 2024 11:42:03 +0000 (06:42 -0500)]
typos
Alan T. DeKok [Thu, 11 Jan 2024 11:39:40 +0000 (06:39 -0500)]
ensure that proxies don't mangle State
Nick Porter [Tue, 9 Jan 2024 10:56:47 +0000 (10:56 +0000)]
Backport yukikey module tests from v4
Nick Porter [Tue, 9 Jan 2024 10:56:13 +0000 (10:56 +0000)]
Default yubikey module instance should register xlat
Nick Porter [Tue, 9 Jan 2024 10:55:46 +0000 (10:55 +0000)]
Correct modhextohex decoding
Nick Porter [Tue, 9 Jan 2024 10:55:04 +0000 (10:55 +0000)]
Correct calculation of Yubikey-Counter
token.use is only 8 bit
Alan T. DeKok [Fri, 5 Jan 2024 21:23:16 +0000 (16:23 -0500)]
print out NAK'd EAP type
Alan T. DeKok [Fri, 5 Jan 2024 14:31:48 +0000 (09:31 -0500)]
added ckey dictionary
Alan T. DeKok [Thu, 7 Dec 2023 14:24:42 +0000 (09:24 -0500)]
improve exception handling. Helps with #5242
so that no python exceptions remain after the do_python_single call.
Otherwise the next request will immediately fail.
Patch from #5242, but separated out to keep commit history
a little clearer.
Nick Porter [Fri, 29 Dec 2023 10:15:04 +0000 (10:15 +0000)]
Add TP Link dictionary
Nick Porter [Tue, 19 Dec 2023 09:26:00 +0000 (09:26 +0000)]
Use base32 perl library available on both Debian and RHEL
Nick Porter [Mon, 18 Dec 2023 20:50:36 +0000 (20:50 +0000)]
Ensure fakeroot is available for `make deb`
Nick Porter [Mon, 18 Dec 2023 20:41:50 +0000 (20:41 +0000)]
Correct retrieval of client stats
Nick Porter [Mon, 11 Dec 2023 15:15:41 +0000 (15:15 +0000)]
Add extra build directories to debian .gitignore
Nick Porter [Mon, 11 Dec 2023 14:13:18 +0000 (14:13 +0000)]
Build unixODBC rather than iODBC - Debian packaging of iODBC is very old
Alan T. DeKok [Thu, 7 Dec 2023 11:54:51 +0000 (06:54 -0500)]
note recent changes
Alan T. DeKok [Thu, 7 Dec 2023 11:46:31 +0000 (06:46 -0500)]
add proxy_dedup_window
which controls how the server drops aggressive retransmissions
from a misbehaving NAS
Alan T. DeKok [Thu, 7 Dec 2023 11:45:29 +0000 (06:45 -0500)]
don't delay proxied rejects from a real home server
Alan T. DeKok [Wed, 29 Nov 2023 15:25:48 +0000 (10:25 -0500)]
more notes on connection starvation
Nick Porter [Tue, 28 Nov 2023 13:08:08 +0000 (13:08 +0000)]
Only report EAP sessions as being expired if they really are
Alan T. DeKok [Mon, 27 Nov 2023 13:20:57 +0000 (08:20 -0500)]
note recent changes
Alan T. DeKok [Sun, 26 Nov 2023 20:10:38 +0000 (15:10 -0500)]
document dedup_key
Nick Porter [Fri, 24 Nov 2023 08:26:01 +0000 (08:26 +0000)]
Add nonnull hint
Alan T. DeKok [Thu, 23 Nov 2023 17:41:21 +0000 (12:41 -0500)]
typo
Alan T. DeKok [Thu, 23 Nov 2023 16:36:29 +0000 (11:36 -0500)]
add dedup_key for badly behaving supplicants