]> git.ipfire.org Git - thirdparty/freeradius-server.git/log
thirdparty/freeradius-server.git
13 years agoRe-order LIBS <-> -lpthread
Alan T. DeKok [Fri, 6 Apr 2012 13:17:12 +0000 (15:17 +0200)] 
Re-order LIBS <-> -lpthread

-lpthread MAY need other libraries.  So adding it first is a good idea.

13 years agoAdded dictionary.terena
Alan T. DeKok [Thu, 5 Apr 2012 15:49:20 +0000 (17:49 +0200)] 
Added dictionary.terena

13 years agoAllow for new state transition on failure
Alan T. DeKok [Tue, 3 Apr 2012 10:22:06 +0000 (11:22 +0100)] 
Allow for new state transition on failure

if our RESPONSE gets a FAILURE message, it means that the
supplicant doesn't like our password.  Rather than complaining
about unexpected response, just send failure.

13 years agoThere might not be a reply
Alan T. DeKok [Wed, 28 Mar 2012 15:14:56 +0000 (17:14 +0200)] 
There might not be a reply

13 years agoDecode encrypted VSAs in requests
Bjørn Mork [Tue, 27 Mar 2012 08:57:36 +0000 (10:57 +0200)] 
Decode encrypted VSAs in requests

Incoming CoA requests can contain encrypted VSAs.  At least one
vendor is known to use this. These VSAs must be decrypted before
being proxied to enable the server to re-encrypt them using
the correct home server secret.

Fix by attempting to decode any encrypted request attribute using
a static vector of \0 bytes.

This also fixes debug logging of encrypted request attributes.

Signed-off-by: Bjørn Mork <bjorn@mork.no>
13 years agoAdded "Interim-Update" as a copy of "Alive"
Alan T. DeKok [Thu, 15 Mar 2012 21:37:22 +0000 (17:37 -0400)] 
Added "Interim-Update" as a copy of "Alive"

13 years agoSet "close on exec" flag
Alan T. DeKok [Thu, 15 Mar 2012 13:03:22 +0000 (09:03 -0400)] 
Set "close on exec" flag

Just to be safe.

13 years agoAdded support for {BASE64_MD5}
Alan T. DeKok [Fri, 9 Mar 2012 08:23:57 +0000 (09:23 +0100)] 
Added support for {BASE64_MD5}

13 years agoSet self request to NULL
Alan T. DeKok [Thu, 8 Mar 2012 07:52:36 +0000 (08:52 +0100)] 
Set self request to NULL

Which allows spare threads to be cleaned up

13 years agoCheck expansion in cf_expand_variables
Alan T. DeKok [Tue, 6 Mar 2012 11:38:37 +0000 (12:38 +0100)] 
Check expansion in cf_expand_variables

Closes Debian bug #662194

13 years agoFix for OSX Lion
Alan T. DeKok [Mon, 5 Mar 2012 10:24:53 +0000 (11:24 +0100)] 
Fix for OSX Lion

13 years agoSet src_ipaddr for STATUS_SERVER packets
Alan T. DeKok [Sat, 3 Mar 2012 08:18:53 +0000 (09:18 +0100)] 
Set src_ipaddr for STATUS_SERVER packets

13 years agoUpdates as per recent documentation
Alan T. DeKok [Mon, 27 Feb 2012 13:17:11 +0000 (14:17 +0100)] 
Updates as per recent documentation

13 years agoClient certs are signed by the CA, not by the server
Alan T. DeKok [Thu, 23 Feb 2012 12:04:31 +0000 (13:04 +0100)] 
Client certs are signed by the CA, not by the server

13 years agoFix typo
Alan T. DeKok [Wed, 22 Feb 2012 08:50:28 +0000 (09:50 +0100)] 
Fix typo

13 years agoUse names for logging parameters, and correct values
Alan T. DeKok [Wed, 22 Feb 2012 08:25:18 +0000 (09:25 +0100)] 
Use names for logging parameters, and correct values

13 years agoWarn if we can't shut down modules cleanly
Alan T. DeKok [Tue, 21 Feb 2012 08:08:44 +0000 (09:08 +0100)] 
Warn if we can't shut down modules cleanly

13 years agoDon't close connections that are in use.
Alan T. DeKok [Tue, 21 Feb 2012 08:08:27 +0000 (09:08 +0100)] 
Don't close connections that are in use.

13 years agoTry to use identity from SIM protocol, not EAP-Identity
Alan T. DeKok [Tue, 21 Feb 2012 07:57:49 +0000 (08:57 +0100)] 
Try to use identity from SIM protocol, not EAP-Identity

13 years agoDocument MySQL character set issues
Alan T. DeKok [Fri, 17 Feb 2012 14:19:29 +0000 (15:19 +0100)] 
Document MySQL character set issues

Patch from Stefan Winter

13 years agoNew dictionary
Alan T. DeKok [Fri, 17 Feb 2012 10:19:50 +0000 (11:19 +0100)] 
New dictionary

13 years agoNew purewave dictionary
Alan T. DeKok [Fri, 17 Feb 2012 08:58:07 +0000 (09:58 +0100)] 
New purewave dictionary

13 years agoemoved "experimental" warning
Alan T. DeKok [Tue, 14 Feb 2012 20:37:30 +0000 (21:37 +0100)] 
emoved "experimental" warning

13 years agoAdded User-Role attribute
Alan T. DeKok [Mon, 13 Feb 2012 19:59:29 +0000 (20:59 +0100)] 
Added User-Role attribute

13 years agoChange ports to not conflict with inner-tunnel
Alan T. DeKok [Mon, 13 Feb 2012 16:02:14 +0000 (17:02 +0100)] 
Change ports to not conflict with inner-tunnel

13 years agoFix EAP-Type values
Alan T. DeKok [Mon, 13 Feb 2012 10:19:08 +0000 (11:19 +0100)] 
Fix EAP-Type values

Noticed by Stefan Winter

13 years agoDirectories need to be +x
Alan T. DeKok [Sat, 11 Feb 2012 09:07:11 +0000 (10:07 +0100)] 
Directories need to be +x

13 years agoCache the TLS-* attributes for fast session resumption
Alan T. DeKok [Fri, 10 Feb 2012 10:29:23 +0000 (11:29 +0100)] 
Cache the TLS-* attributes for fast session resumption

So that the user can re-do all of the checks

13 years agoUpdate documentation on attribute assignment for certs
Alan T. DeKok [Fri, 10 Feb 2012 10:14:29 +0000 (11:14 +0100)] 
Update documentation on attribute assignment for certs

13 years agoAutomatically make directories
Alan T. DeKok [Thu, 9 Feb 2012 12:28:31 +0000 (13:28 +0100)] 
Automatically make directories

13 years agoCreate common name only if there's a subject
Alan T. DeKok [Thu, 9 Feb 2012 10:46:23 +0000 (11:46 +0100)] 
Create common name only if there's a subject

Otherwise OpenSSL returns the common name from the issuer cert

13 years agostrncpy is evil. Don't use it.
Alan T. DeKok [Wed, 8 Feb 2012 15:01:43 +0000 (16:01 +0100)] 
strncpy is evil.  Don't use it.

13 years agoPrint abinary values without delimiters, unless requested by caller.
Chris Mikkelson [Tue, 7 Feb 2012 21:40:13 +0000 (15:40 -0600)] 
Print abinary values without delimiters, unless requested by caller.

13 years agoheck for account and password expiration
Alan T. DeKok [Tue, 7 Feb 2012 19:58:52 +0000 (20:58 +0100)] 
heck for account and password expiration

13 years agoFix typos
Alan T. DeKok [Tue, 7 Feb 2012 19:54:11 +0000 (20:54 +0100)] 
Fix typos

13 years agoAdd "syslog_facility" to rlm_linelog
Matthew Newton [Mon, 6 Feb 2012 15:07:32 +0000 (16:07 +0100)] 
Add "syslog_facility" to rlm_linelog

Document it.  Export the facility name to integer table
from mainconfig.c

13 years agoNote recent changes
Alan T. DeKok [Mon, 6 Feb 2012 11:24:49 +0000 (12:24 +0100)] 
Note recent changes

13 years agoMerge pull request #47 from mcnewton/patch-debian
Alan DeKok [Mon, 6 Feb 2012 11:23:57 +0000 (03:23 -0800)] 
Merge pull request #47 from mcnewton/patch-debian

small fixes mainly to debian packaging

14 years agominor fixes to debian packaging 47/head
Matthew Newton [Sat, 4 Feb 2012 00:31:06 +0000 (00:31 +0000)] 
minor fixes to debian packaging

rlm_sql.libs.diff needed updating after libtool changes
chmod in debian/rules broke with umask set
ln -s in debian/rules stopped a rebuild working
debian/rules clean correctly wipes wimax makefile, which shouldn't be in git

14 years agoAdd the DHCP dictionary by default
Alan T. DeKok [Mon, 30 Jan 2012 17:06:27 +0000 (18:06 +0100)] 
Add the DHCP dictionary by default

14 years agoEnable DHCP by default
Alan T. DeKok [Sun, 29 Jan 2012 11:15:12 +0000 (12:15 +0100)] 
Enable DHCP by default

14 years agoMD5 -> SHA1 changes
Alan T. DeKok [Thu, 26 Jan 2012 09:02:09 +0000 (10:02 +0100)] 
MD5 -> SHA1 changes

to match the changes in the default configs

14 years agoUse non-zero timeout in pcap_open_live
Alan T. DeKok [Wed, 25 Jan 2012 13:44:14 +0000 (14:44 +0100)] 
Use non-zero timeout in pcap_open_live

http://www.tcpdump.org/pcap.html says:

  to_ms is the read time out in milliseconds (a value of 0 means
  no time out; on at least some platforms, this means that you may
  wait until a sufficient number of packets arrive before seeing
  any packets, so you should use a non-zero timeout)

Nice..

14 years agoPut quotes around string
Alan T. DeKok [Tue, 24 Jan 2012 14:55:30 +0000 (15:55 +0100)] 
Put quotes around string

14 years agoFix typo. "post-auth", not "postauth"
Alan T. DeKok [Tue, 24 Jan 2012 14:31:23 +0000 (15:31 +0100)] 
Fix typo.  "post-auth", not "postauth"

14 years agoOCSP_REQ_CTX is only in newer versions of OpenSSL
Alan T. DeKok [Mon, 23 Jan 2012 20:09:46 +0000 (21:09 +0100)] 
OCSP_REQ_CTX is only in newer versions of OpenSSL

14 years agoAdd OCSP softfail option
Matthew Newton [Mon, 16 Jan 2012 17:07:28 +0000 (17:07 +0000)] 
Add OCSP softfail option

Normally, failure to get an OCSP response (rather than failure to validate)
will reject the client. This allows that type of failure to still succeed.

14 years agoAdd OCSP timeout option
Matthew Newton [Mon, 16 Jan 2012 16:24:53 +0000 (16:24 +0000)] 
Add OCSP timeout option

Ability to reduce the amount of time waited for an OCSP response, for
example the responder is not currently available.

14 years agoFix for FreeBSD closes bug #190
Alan T. DeKok [Sat, 21 Jan 2012 08:30:51 +0000 (09:30 +0100)] 
Fix for FreeBSD closes bug #190

Because apparently FreeBSD can't figure out that
"memset" of a struct to zero means "set the ENTIRE struct to zero"

14 years agoFix typo
Alan T. DeKok [Fri, 20 Jan 2012 12:37:16 +0000 (13:37 +0100)] 
Fix typo

14 years agoUse the RADIUS SQL IP Pool module to allocate addresses for DHCP
Fajar A. Nugraha [Fri, 20 Jan 2012 12:30:43 +0000 (13:30 +0100)] 
Use the RADIUS SQL IP Pool module to allocate addresses for DHCP

This commit adds MySQL-specific queries for DHCP in ippool-dhcp.conf,
a sample configuration for the sqlippool module in dhcp_sqlippool,
examples of using it in sites-available/dhcp,
and "glue" policies in policy.conf

14 years agoNote that updating ARP must be done as root
Alan T. DeKok [Tue, 17 Jan 2012 09:07:42 +0000 (10:07 +0100)] 
Note that updating ARP must be done as root

14 years agoFix location of label to avoid compiler warnings
Alan T. DeKok [Mon, 16 Jan 2012 20:39:47 +0000 (21:39 +0100)] 
Fix location of label to avoid compiler warnings

14 years agoMerge pull request #43 from mcnewton/patch-linelog-group
Alan DeKok [Mon, 16 Jan 2012 20:37:33 +0000 (12:37 -0800)] 
Merge pull request #43 from mcnewton/patch-linelog-group

add group option to rlm_linelog

14 years agoMerge pull request #42 from mcnewton/patch-detaillog-group
Alan DeKok [Mon, 16 Jan 2012 20:37:30 +0000 (12:37 -0800)] 
Merge pull request #42 from mcnewton/patch-detaillog-group

add group option to rlm_detail

14 years agoMerge pull request #41 from fajarnugraha/v2.1.x-debian-enhancement
Alan DeKok [Mon, 16 Jan 2012 11:55:33 +0000 (03:55 -0800)] 
Merge pull request #41 from fajarnugraha/v2.1.x-debian-enhancement

V2.1.x debian enhancement

14 years agoUpdated freeradius.init from Debian's 2.1.10+dfsg-2 41/head
Fajar A. Nugraha [Mon, 16 Jan 2012 08:35:24 +0000 (15:35 +0700)] 
Updated freeradius.init from Debian's 2.1.10+dfsg-2

This commit applies changes to debian/freeradius.init on Debian's
2.1.10+dfsg-2, by Josip Rodin <joy-packages@debian.org>.

Relevant changelog from Debian's 2.1.10+dfsg-2 changelog:
* force-reload switches from restart to reload, per policy 9.3.2.

14 years agoUpdated preinst, postinst, and prerm script from Debian's 2.1.10+dfsg-2
Fajar A. Nugraha [Mon, 16 Jan 2012 07:42:29 +0000 (14:42 +0700)] 
Updated preinst, postinst, and prerm script from Debian's 2.1.10+dfsg-2

This commit applies changes to preinst, postinst, and prerm script on
Debian's 2.1.10+dfsg-2, by Josip Rodin <joy-packages@debian.org>.

Relevant changelog from Debian's 2.1.10+dfsg-2 changelog:
...
We now have to send SIGHUP to the daemon as a postrotate
action, which makes it reopen log files and continue normally.
...
* However, the latter signal also makes the server re-read configuration
  files, but unlike the initial server start, this all happens under
  the unprivileged user. That in turn means that if by any chance there
  is any part of FR configuration that happens not to be readable by
  group freerad (or whatever non-default is configured), the reload
  will fail, effectively silently, as the log has been moved away. Gah.
  So we have to make an effort to ensure that the configuration files
  are still readable by that user, otherwise the reload fails and the
  aforementioned bug is not fixed. The files seem to revert to
  root:root upon conffile actions, at least that's what happened to me
  and I think that was the cause. So, on upgrade, try to re-apply the
  dpkg-statoverrides on our /etc/freeradius/* stuff, whatever they are,
  under the assumption they will let the freerad group read config files
  as is the initial setup. (I wish dpkg-statoverride --update $file
  just did the right thing, but it doesn't, so there's a new local
  function that does that.)
* While doing the latter, noticed that we were checking for directories
  in dpkg-statoverride --list output with trailing slashes, but they
  get output without it, so it was a no-op. Fixed the check by removing
  the trailing slashes. Also then noticed that we were grepping --list
  output, but it takes an optional glob pattern, so saved us that
  pointless grep fork by using that facility, just as described in the
  policy manual.

14 years agoUpdated freeradius.logrotate from Debian's 2.1.10+dfsg-2
Fajar A. Nugraha [Mon, 16 Jan 2012 07:26:22 +0000 (14:26 +0700)] 
Updated freeradius.logrotate from Debian's 2.1.10+dfsg-2

This commit applies changes to debian/freeradius.logrotate on Debian's
2.1.10+dfsg-2, by Josip Rodin <joy-packages@debian.org>.

Relevant changelog from Debian's 2.1.10+dfsg-2 changelog:
Since 2.1.9, the daemon stopped reopening the default radius.log file
constantly, which means the default logrotate setup breaks the default
logging. D'oh. We now have to send SIGHUP to the daemon as a postrotate
action, which makes it reopen log files and continue normally.
* Added delaycompress to the logrotate options, just to be on the safe
  side.
* Added a reload action into the init script accordingly, so that the
  right pidfile is picked up (one that can be overridden by the admin
  in /etc/default/freeradius, available since the last release).
* Called reload from the postrotate section, closes: #602815.

14 years agoAdded attributes for RFC 5447
Alan T. DeKok [Sun, 15 Jan 2012 07:15:13 +0000 (08:15 +0100)] 
Added attributes for RFC 5447

14 years agoFix typo in name of rlm_dbm_parser man page
John Dennis [Fri, 13 Jan 2012 17:45:14 +0000 (12:45 -0500)] 
Fix typo in name of rlm_dbm_parser man page

It was rlm_dbm_parse but should be rlm_dbm_parser to match the
executable name. Also fix name in man page.

14 years agoMerge pull request #38 from mcnewton/patch-2.1-ocsp-nonce
Alan DeKok [Sun, 15 Jan 2012 08:12:25 +0000 (00:12 -0800)] 
Merge pull request #38 from mcnewton/patch-2.1-ocsp-nonce

Add option to disable ocsp nonce (patch for v2.1.x)

14 years agoChange asserts to run-time checks
Alan T. DeKok [Fri, 13 Jan 2012 15:12:45 +0000 (16:12 +0100)] 
Change asserts to run-time checks

14 years agoNote sock->interface
Alan T. DeKok [Fri, 13 Jan 2012 13:46:49 +0000 (14:46 +0100)] 
Note sock->interface

14 years agoFix typo
Alan T. DeKok [Fri, 13 Jan 2012 13:43:42 +0000 (14:43 +0100)] 
Fix typo

14 years agoPrint out DEBUG message if adding ARP entry failed
Alan T. DeKok [Fri, 13 Jan 2012 10:09:24 +0000 (11:09 +0100)] 
Print out DEBUG message if adding ARP entry failed

14 years agoPrint out values we parse
Alan T. DeKok [Fri, 13 Jan 2012 10:04:14 +0000 (11:04 +0100)] 
Print out values we parse

14 years agoAdd option to be able to disable nonce in OCSP request 38/head
Matthew Newton [Thu, 12 Jan 2012 16:53:29 +0000 (16:53 +0000)] 
Add option to be able to disable nonce in OCSP request

Some OCSP responders cannot cope with an OCSP request if nonce
is used so this gives a way to allow freeradius to work with them.

14 years agoNote recent changes
Alan T. DeKok [Thu, 12 Jan 2012 10:29:19 +0000 (11:29 +0100)] 
Note recent changes

14 years agoAdd /etc/default/freeradius to debian package
Matthew Newton [Wed, 11 Jan 2012 15:40:52 +0000 (15:40 +0000)] 
Add /etc/default/freeradius to debian package

This gives an easy way to supply options to the daemon when
starting it using the init.d script.

14 years agoUse correct path for DHCP dictionary
Alan T. DeKok [Thu, 12 Jan 2012 07:59:31 +0000 (08:59 +0100)] 
Use correct path for DHCP dictionary

14 years agoUpdates to last patch
Alan T. DeKok [Thu, 12 Jan 2012 07:57:47 +0000 (08:57 +0100)] 
Updates to last patch

Fix compiler warnings.
Code formatting.
Divide external timeout by 3 to account for 3x retries hard-coded
into MySQL

14 years agoAdd support for query timeouts
Brian De Wolf [Thu, 12 Jan 2012 07:53:28 +0000 (08:53 +0100)] 
Add support for query timeouts

Due to internal MySQL retries, the actual timeout is 3x
the configured value.

14 years agoUse INCLTDL in CFLAGS
Alan T. DeKok [Thu, 12 Jan 2012 07:52:15 +0000 (08:52 +0100)] 
Use INCLTDL in CFLAGS

14 years agoFinal fix for system libltdl (or not)
Alan T. DeKok [Wed, 11 Jan 2012 15:19:22 +0000 (16:19 +0100)] 
Final fix for system libltdl (or not)

14 years agoUnix group setting for detail log files 42/head
Matthew Newton [Wed, 11 Jan 2012 12:33:03 +0000 (12:33 +0000)] 
Unix group setting for detail log files

Patch to allow the group to be set when updating detail logs, rather
than being limited to just the group of the running daemon.

14 years agoAdd new 'group' option to rlm_linelog 43/head
Matthew Newton [Wed, 11 Jan 2012 12:29:02 +0000 (12:29 +0000)] 
Add new 'group' option to rlm_linelog

Allows the group to be set when updating linelogs, rather
than being fixed as the group of the running daemon.

14 years agoRename DHCP config items
Alan T. DeKok [Mon, 9 Jan 2012 15:36:10 +0000 (16:36 +0100)] 
Rename DHCP config items

src_ipaddr and src_interface
instead of interface_ipaddr and arp_interface.

It's a little clearer

14 years ago"username" and "password" cannot be non-empty for status_check=request
Alan T. DeKok [Fri, 6 Jan 2012 13:54:56 +0000 (14:54 +0100)] 
"username" and "password" cannot be non-empty for status_check=request

Because some people misconfigure the server.

14 years agoNote recent changes
Alan T. DeKok [Thu, 29 Dec 2011 22:56:46 +0000 (17:56 -0500)] 
Note recent changes

14 years agoUse correct method of recursing into subdirs
Alan T. DeKok [Thu, 29 Dec 2011 22:50:18 +0000 (17:50 -0500)] 
Use correct method of recursing into subdirs

Since commit 0347cacfe0f470353, we have a better way of recursing
into subdirs.  Having an explicit test for $(RLM_SUBDIRS), and
then manually recursing into them is wrong.  It causes modules
like rlm_eap to be built twice.

Instead, remove the test for $(RLM_SUBDIRS), and make
$(TARGET).la depend on $(RLM_SUBDIRS)

14 years agoAdd EXEEXT to binaries
Alan T. DeKok [Thu, 29 Dec 2011 21:49:05 +0000 (16:49 -0500)] 
Add EXEEXT to binaries

Closes bug #188

14 years agoAdd and document -F radutmp_file
Alan T. DeKok [Mon, 26 Dec 2011 17:37:38 +0000 (12:37 -0500)] 
Add and document -F radutmp_file

14 years agoUse new dict_valnamebyattr function
Alan T. DeKok [Fri, 23 Dec 2011 14:33:57 +0000 (09:33 -0500)] 
Use new dict_valnamebyattr function

14 years agoAdded 'interface_ipaddr' configuration parameter to help freeradius send the DHCP...
Renaud Métrich [Mon, 26 Dec 2011 16:43:22 +0000 (17:43 +0100)] 
Added 'interface_ipaddr' configuration parameter to help freeradius send the DHCP reply packet using interface's IP address as source, and not 'ipaddr' which may be 255.255.255.255 when listening for broadcasts

14 years agoRemove compiler warning
Alan T. DeKok [Fri, 23 Dec 2011 14:28:40 +0000 (09:28 -0500)] 
Remove compiler warning

14 years agoUse new dict_valnamebyattr function
Alan T. DeKok [Fri, 23 Dec 2011 14:28:01 +0000 (09:28 -0500)] 
Use new dict_valnamebyattr function

14 years agoUse new functions for getting enum name
Alan T. DeKok [Fri, 23 Dec 2011 14:16:37 +0000 (09:16 -0500)] 
Use new functions for getting enum name

14 years agoAdded new method to get name of enum from values
Alan T. DeKok [Fri, 23 Dec 2011 14:15:53 +0000 (09:15 -0500)] 
Added new method to get name of enum from values

This is simpler than having duplicate code throughout the
source.

14 years agoFix for latest set of arguments
Alan T. DeKok [Wed, 21 Dec 2011 13:47:48 +0000 (08:47 -0500)] 
Fix for latest set of arguments

14 years agoInitialize authentication vector.
Alan T. DeKok [Tue, 20 Dec 2011 14:38:22 +0000 (09:38 -0500)] 
Initialize authentication vector.

Otherwise proxied packets can have a zero authentication
vector.

14 years agoNote recent changes
Alan T. DeKok [Tue, 20 Dec 2011 13:16:05 +0000 (08:16 -0500)] 
Note recent changes

14 years agoNote that "hashsize=0" is a bad idea
Alan T. DeKok [Tue, 20 Dec 2011 13:14:40 +0000 (08:14 -0500)] 
Note that "hashsize=0" is a bad idea

14 years agoUse "last_found" in a thread-safe manner
Alan T. DeKok [Mon, 19 Dec 2011 20:44:37 +0000 (15:44 -0500)] 
Use "last_found" in a thread-safe manner

It's a thread-local variable, not a variable global to the
configuration.

Note also that much of the rest of the module is poor.
Re-reading the files for every packet is HORRIBLE.  It causes
more threading issues.
Fixed-size hash tables are similarly poor practice.

14 years agoAs posted to the list
Alan T. DeKok [Fri, 16 Dec 2011 18:40:22 +0000 (13:40 -0500)] 
As posted to the list

14 years agoAccount for EAP header and EAP-MSCHAPv2 opcode
Alan T. DeKok [Tue, 13 Dec 2011 20:07:07 +0000 (21:07 +0100)] 
Account for EAP header and EAP-MSCHAPv2 opcode

Found by Matt Dayman.

14 years agoAdded "log { use_utc = yes/no }" configuration
Alan T. DeKok [Thu, 8 Dec 2011 13:48:55 +0000 (14:48 +0100)] 
Added "log { use_utc = yes/no }" configuration

14 years agoMore strlen fixes
Alan T. DeKok [Sun, 4 Dec 2011 09:00:57 +0000 (10:00 +0100)] 
More strlen fixes

14 years agoMore strlen fixes
Alan T. DeKok [Sun, 4 Dec 2011 08:59:50 +0000 (09:59 +0100)] 
More strlen fixes

14 years agoFixed bad strlen
Alan T. DeKok [Sun, 4 Dec 2011 08:53:52 +0000 (09:53 +0100)] 
Fixed bad strlen