<html xmlns:v="urn:schemas-microsoft-com:vml" xmlns:o="urn:schemas-microsoft-com:office:office" xmlns:w="urn:schemas-microsoft-com:office:word" xmlns:m="http://schemas.microsoft.com/office/2004/12/omml" xmlns="http://www.w3.org/TR/REC-html40">
<head>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii">
<meta name=Generator content="Microsoft Word 12 (filtered medium)">
<style>
<!--
/* Font Definitions */
@font-face
        {font-family:Wingdings;
        panose-1:5 0 0 0 0 0 0 0 0 0;}
@font-face
        {font-family:SimSun;
        panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
        {font-family:"Cambria Math";
        panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
        {font-family:Calibri;
        panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
        {font-family:Tahoma;
        panose-1:2 11 6 4 3 5 4 4 2 4;}
@font-face
        {font-family:SimSun;
        panose-1:2 1 6 0 3 1 1 1 1 1;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
        {margin:0cm;
        margin-bottom:.0001pt;
        font-size:12.0pt;
        font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
        {mso-style-priority:99;
        color:blue;
        text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
        {mso-style-priority:99;
        color:purple;
        text-decoration:underline;}
span.EmailStyle17
        {mso-style-type:personal-reply;
        font-family:"Calibri","sans-serif";
        color:#1F497D;}
.MsoChpDefault
        {mso-style-type:export-only;}
@page Section1
        {size:612.0pt 792.0pt;
        margin:72.0pt 90.0pt 72.0pt 90.0pt;}
div.Section1
        {page:Section1;}
-->
</style>
<!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
</head>
<body lang=EN-AU link=blue vlink=purple>
<div class=Section1>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Hi Ashwini,<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>I have added param for aut_radius, but no luck. </span><span
style='font-size:11.0pt;font-family:Wingdings;color:#1F497D'>L</span><span
style='font-size:11.0pt;font-family:"Calibri","sans-serif";color:#1F497D'><o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Why do I need mysql.so if the radius server will host all users
credential?<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Regards,<o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'>Leon <o:p></o:p></span></p>
<p class=MsoNormal><span style='font-size:11.0pt;font-family:"Calibri","sans-serif";
color:#1F497D'><o:p> </o:p></span></p>
<div style='border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0cm 0cm 0cm'>
<p class=MsoNormal><b><span lang=EN-US style='font-size:10.0pt;font-family:
"Tahoma","sans-serif"'>From:</span></b><span lang=EN-US style='font-size:10.0pt;
font-family:"Tahoma","sans-serif"'> ASHWINI NAIDU
[mailto:ashwini.naidu@gmail.com] <br>
<b>Sent:</b> Monday, 15 June 2009 2:52 PM<br>
<b>To:</b> Leon Li<br>
<b>Cc:</b> Uwe Kastens; users@lists.opensips.org<br>
<b>Subject:</b> Re: [OpenSIPS-Users] No RADIUS traffic<o:p></o:p></span></p>
</div>
<p class=MsoNormal><o:p> </o:p></p>
<p class=MsoNormal style='margin-bottom:12.0pt'><o:p> </o:p></p>
<div>
<p class=MsoNormal>On Mon, Jun 15, 2009 at 10:19 AM, ASHWINI NAIDU <<a
href="mailto:ashwini.naidu@gmail.com">ashwini.naidu@gmail.com</a>> wrote:<o:p></o:p></p>
<p class=MsoNormal>hi leon,<br>
<br>
But i do not see your openser communicating with radiusclient.<br>
<br>
modparam("auth_radius", "radius_config", "/etc/radiusclient-ng/radiusclient.conf")<br>
<br>
mention the path of radiusclient.conf properly. <o:p></o:p></p>
<div>
<p class=MsoNormal style='margin-bottom:12.0pt'><br>
<br>
Your mysql support is also commented. <br>
<br>
<b>loadmodule "mysql.so"</b> <br>
<br>
<br>
<o:p></o:p></p>
</div>
<blockquote style='border:none;border-left:solid #CCCCCC 1.0pt;padding:0cm 0cm 0cm 6.0pt;
margin-left:4.8pt;margin-right:0cm'>
<p class=MsoNormal><o:p> </o:p></p>
<div>
<div>
<p class=MsoNormal style='margin-bottom:12.0pt'><br>
<br>
<br>
<br>
<br>
<o:p></o:p></p>
<div>
<p class=MsoNormal>On Mon, Jun 15, 2009 at 5:13 AM, Leon Li <<a
href="mailto:Leon.Li@aarnet.edu.au" target="_blank">Leon.Li@aarnet.edu.au</a>>
wrote:<o:p></o:p></p>
<p class=MsoNormal>Here it is.<br>
<br>
####### Global Parameters #########<br>
<br>
debug=3<br>
log_stderror=no<br>
log_facility=LOG_LOCAL0<br>
<br>
fork=yes<br>
children=4<br>
<br>
/* uncomment the following lines to enable debugging */<br>
debug=6<br>
fork=no<br>
log_stderror=yes<br>
<br>
/* uncomment the next line to disable TCP (default on) */<br>
#disable_tcp=yes<br>
<br>
/* uncomment the next line to enable the auto temporary blacklisting of<br>
not available destinations (default disabled) */<br>
#disable_dns_blacklist=no<br>
<br>
/* uncomment the next line to enable IPv6 lookup after IPv4 dns<br>
lookup failures (default disabled) */ #dns_try_ipv6=yes<br>
<br>
/* uncomment the next line to disable the auto discovery of local<br>
aliases<br>
based on revers DNS on IPs (default on) */ #auto_aliases=no<br>
<br>
/* uncomment the following lines to enable TLS support (default off) */<br>
#disable_tls = no #listen = tls:your_IP:5061 #tls_verify_server = 1<br>
#tls_verify_client = 1 #tls_require_client_certificate = 0 #tls_method =<br>
TLSv1 #tls_certificate = "/usr/local/etc/openser/tls/user/user-cert.pem"<br>
#tls_private_key = "/usr/local/etc/openser/tls/user/user-privkey.pem"<br>
#tls_ca_list = "/usr/local/etc/openser/tls/user/user-calist.pem"<br>
<br>
listen=202.158.197.134<br>
port=5060<br>
<br>
/* uncomment and configure the following line if you want openser to<br>
bind on a specific interface/port/proto (default bind on all<br>
available) */ #listen=udp:<a href="http://192.168.1.2:5060" target="_blank">192.168.1.2:5060</a><br>
<br>
<br>
####### Modules Section ########<br>
<br>
#set module path<br>
mpath="/usr/local/lib/openser/modules/"<br>
<br>
/* uncomment next line for MySQL DB support */ #loadmodule "mysql.so"<br>
loadmodule "sl.so"<br>
loadmodule "tm.so"<br>
loadmodule "rr.so"<br>
loadmodule "maxfwd.so"<br>
loadmodule "usrloc.so"<br>
loadmodule "registrar.so"<br>
loadmodule "textops.so"<br>
loadmodule "mi_fifo.so"<br>
loadmodule "uri_db.so"<br>
loadmodule "uri.so"<br>
loadmodule "xlog.so"<br>
loadmodule "acc.so"<br>
/* uncomment next lines for MySQL based authentication support<br>
NOTE: a DB (like mysql) module must be also loaded */ loadmodule<br>
"auth.so"<br>
loadmodule "auth_radius.so"<br>
#loadmodule "auth_db.so"<br>
/* uncomment next line for aliases support<br>
NOTE: a DB (like mysql) module must be also loaded */ #loadmodule<br>
"alias_db.so"<br>
/* uncomment next line for multi-domain support<br>
NOTE: a DB (like mysql) module must be also loaded<br>
NOTE: be sure and enable multi-domain support in all used modules<br>
(see "multi-module params" section ) */
#loadmodule "domain.so"<br>
/* uncomment the next two lines for presence server support<br>
NOTE: a DB (like mysql) module must be also loaded */ #loadmodule<br>
"presence.so"<br>
#loadmodule "presence_xml.so"<br>
<br>
<br>
# ----------------- setting module-specific parameters ---------------<br>
<br>
<br>
# ----- mi_fifo params -----<br>
modparam("mi_fifo", "fifo_name",
"/tmp/openser_fifo")<br>
<br>
<br>
# ----- rr params -----<br>
# add value to ;lr param to cope with most of the UAs modparam("rr",<br>
"enable_full_lr", 1) # do not append from tag to the RR (no need for<br>
this script) modparam("rr", "append_fromtag", 0)<br>
<br>
<br>
# ----- rr params -----<br>
modparam("registrar", "method_filtering", 1)<br>
/* uncomment the next line to disable parallel forking via location */ #<br>
modparam("registrar", "append_branches", 0)<br>
/* uncomment the next line not to allow more than 10 contacts per AOR */<br>
#modparam("registrar", "max_contacts", 10)<br>
<br>
<br>
# ----- uri_db params -----<br>
/* by default we disable the DB support in the module as we do not need<br>
it<br>
in this configuration */<br>
modparam("uri_db", "use_uri_table", 0)<br>
modparam("uri_db", "db_url", "")<br>
<br>
<br>
# ----- acc params -----<br>
/* what sepcial events should be accounted ? */ modparam("acc",<br>
"early_media", 1) modparam("acc", "report_ack",
1) modparam("acc",<br>
"report_cancels", 1)<br>
/* by default ww do not adjust the direct of the sequential requests.<br>
if you enable this parameter, be sure the enable
"append_fromtag"<br>
in "rr" module */<br>
modparam("acc", "detect_direction", 0)<br>
/* account triggers (flags) */<br>
modparam("acc", "failed_transaction_flag", 3)
modparam("acc",<br>
"log_flag", 1) modparam("acc", "log_missed_flag",
2)<br>
/* uncomment the following lines to enable DB accounting also */<br>
modparam("acc", "db_flag", 1) modparam("acc",
"db_missed_flag", 2)<br>
<br>
# ----- multi-module params -----<br>
/* uncomment the following line if you want to enable multi-domain<br>
support<br>
in the modules (dafault off) */<br>
#modparam("alias_db|auth_db|usrloc|uri_db", "use_domain",
1)<br>
<br>
####### Routing Logic ########<br>
<br>
<br>
# main request routing logic<br>
<br>
route{<br>
<br>
if (!mf_process_maxfwd_header("10")) {<br>
sl_send_reply("483","Too Many Hops");<br>
exit;<br>
}<br>
<br>
if (has_totag()) {<br>
# sequential request
withing a dialog should<br>
# take the path
determined by record-routing<br>
if (loose_route()) {<br>
if (is_method("BYE")) {<br>
setflag(1); # do accouting ...<br>
setflag(3); # ... even if the<br>
transaction fails<br>
}<br>
route(1);<br>
} else {<br>
/* uncomment the following lines if you want to<br>
enable presence */<br>
##if (is_method("SUBSCRIBE") && $rd ==<br>
"your.server.ip.address") {<br>
## # in-dialog subscribe requests<br>
## route(2);<br>
## exit;<br>
##}<br>
if ( is_method("ACK") ) {<br>
if ( t_check_trans() ) {<br>
# non
loose-route, but stateful<br>
ACK; must be an ACK after a 487 or e.g. 404 from upstream server<br>
t_relay();<br>
exit;<br>
} else {<br>
# ACK without
matching<br>
transaction ... ignore and discard.\n");<br>
exit;<br>
}<br>
}<br>
sl_send_reply("404","Not here");<br>
}<br>
exit;<br>
}<br>
<br>
#initial requests<br>
<br>
# CANCEL processing<br>
if (is_method("CANCEL"))<br>
{<br>
if (t_check_trans())<br>
t_relay();<br>
exit;<br>
}<br>
<br>
t_check_trans();<br>
<br>
# authenticate if from local subscriber (uncomment
to enable<br>
auth)<br>
##if (!(method=="REGISTER") &&
from_uri==myself)<br>
##{<br>
## if (!proxy_authorize("",
"subscriber")) {<br>
##
proxy_challenge("", "0");<br>
##
exit;<br>
## }<br>
## if (!check_from()) {<br>
##
sl_send_reply("403","Forbidden auth ID");<br>
##
exit;<br>
## }<br>
##<br>
## consume_credentials();<br>
## # caller authenticated<br>
##}<br>
<br>
# record routing<br>
if (!is_method("REGISTER|MESSAGE"))<br>
record_route();<br>
<br>
# account only INVITEs<br>
if (is_method("INVITE")) {<br>
setflag(1); # do
accouting<br>
}<br>
if (!uri==myself)<br>
/* replace with following line if multi-domain
support is used<br>
*/<br>
##if (!is_uri_host_local())<br>
{<br>
append_hf("P-hint:
outbound\r\n");<br>
# if you have some
interdomain connections via TLS<br>
##if($rd=="<a
href="http://tls_domain1.net" target="_blank">tls_domain1.net</a>") {<br>
##
t_relay("tls:<a href="http://domain1.net" target="_blank">domain1.net</a>");<br>
##
exit;<br>
##} else if($rd=="<a
href="http://tls_domain2.net" target="_blank">tls_domain2.net</a>") {<br>
##
t_relay("tls:<a href="http://domain2.net" target="_blank">domain2.net</a>");<br>
##
exit;<br>
##}<br>
route(1);<br>
}<br>
<br>
# requests for my domain<br>
<br>
/* uncomment this if you want to enable presence
server<br>
and comment the next 'if' block<br>
NOTE: uncomment also the definition of route[2]
from below<br>
*/<br>
##if( is_method("PUBLISH|SUBSCRIBE"))<br>
##
route(2);<br>
<br>
if (is_method("PUBLISH"))<br>
{<br>
sl_send_reply("503", "Service Unavailable");<br>
exit;<br>
}<br>
<br>
<br>
if (is_method("REGISTER"))<br>
{<br>
# authenticate the
REGISTER requests (uncomment to<br>
enable auth)<br>
##if
(!www_authorize("", "subscriber"))<br>
##{<br>
##
www_challenge("", "0");<br>
##
exit;<br>
##}<br>
##<br>
##if (!check_to())<br>
##{<br>
##
sl_send_reply("403","Forbidden auth ID");<br>
##
exit;<br>
##}<br>
<br>
xlog("L_INFO",
"REGISTER for ($fU) $ru\n");<br>
if
(!radius_www_authorize(""))<br>
{<br>
log(1, "Proxy Authentication Required<br>
(Digest)\n");<br>
www_challenge("", "0");<br>
exit;<br>
};<br>
<br>
if (!save("location"))<br>
sl_reply_error();<br>
<br>
exit;<br>
}<br>
<br>
if ($rU==NULL) {<br>
# request with no
Username in RURI<br>
sl_send_reply("484","Address Incomplete");<br>
exit;<br>
}<br>
<br>
# apply DB based aliases (uncomment to enable)<br>
##alias_db_lookup("dbaliases");<br>
<br>
if (!lookup("location")) {<br>
switch ($retcode) {<br>
case -1:<br>
case -3:<br>
t_newtran();<br>
t_reply("404", "Not
Found");<br>
exit;<br>
case -2:<br>
sl_send_reply("405", "Method
Not<br>
Allowed");<br>
exit;<br>
}<br>
}<br>
<br>
# when routing via usrloc, log the missed calls also<br>
setflag(2);<br>
<br>
route(1);<br>
}<br>
<br>
<br>
route[1] {<br>
# for INVITEs enable some additional helper routes<br>
if (is_method("INVITE")) {<br>
t_on_branch("2");<br>
t_on_reply("2");<br>
t_on_failure("1");<br>
}<br>
<br>
if (!t_relay()) {<br>
sl_reply_error();<br>
};<br>
exit;<br>
}<br>
<br>
branch_route[2] {<br>
xlog("new branch at $ru\n");<br>
}<br>
<br>
<br>
onreply_route[2] {<br>
xlog("incoming reply\n");<br>
}<br>
<br>
<br>
failure_route[1] {<br>
if (t_was_cancelled()) {<br>
exit;<br>
}<br>
<br>
# uncomment the following lines if you want to block
client<br>
# redirect based on 3xx replies.<br>
##if (t_check_status("3[0-9][0-9]")) {<br>
##t_reply("404","Not found");<br>
## exit;<br>
##}<br>
<br>
# uncomment the following lines if you want to
redirect the<br>
failed<br>
# calls to a different new destination<br>
##if (t_check_status("486|408")) {<br>
## sethostport("<a
href="http://192.168.2.100:5060" target="_blank">192.168.2.100:5060</a>");<br>
## append_branch();<br>
## # do not set the missed call
flag again<br>
## t_relay();<br>
##}<o:p></o:p></p>
<div>
<p class=MsoNormal>}<br>
<br>
Regards,<br>
Leon<br>
<br>
-----Original Message-----<br>
From: Uwe Kastens [mailto:<a href="mailto:kiste@kiste.org" target="_blank">kiste@kiste.org</a>]<o:p></o:p></p>
</div>
<div>
<p class=MsoNormal style='margin-bottom:12.0pt'>Sent: Friday, 12 June 2009 4:51
PM<br>
To: Leon Li<br>
Cc: <a href="mailto:users@lists.opensips.org" target="_blank">users@lists.opensips.org</a><br>
Subject: Re: [OpenSIPS-Users] No RADIUS traffic<br>
<br>
Hi,<o:p></o:p></p>
</div>
<div>
<p class=MsoNormal style='margin-bottom:12.0pt'>This is strange. Could you post
your opensips.cfg or send it to me<br>
directly?<br>
<br>
BR<br>
<br>
Uwe<br>
<br>
<br>
<o:p></o:p></p>
</div>
<div>
<div>
<p class=MsoNormal>_______________________________________________<br>
Users mailing list<br>
<a href="mailto:Users@lists.opensips.org" target="_blank">Users@lists.opensips.org</a><br>
<a href="http://lists.opensips.org/cgi-bin/mailman/listinfo/users"
target="_blank">http://lists.opensips.org/cgi-bin/mailman/listinfo/users</a><o:p></o:p></p>
</div>
</div>
</div>
<p class=MsoNormal><br>
<br clear=all>
<o:p></o:p></p>
</div>
</div>
<div>
<div>
<p class=MsoNormal>-- <br>
Thanking You,<br>
Ashwini BR Naidu<o:p></o:p></p>
</div>
</div>
</blockquote>
</div>
<p class=MsoNormal><br>
<br clear=all>
<br>
-- <br>
Thanking You,<br>
Ashwini BR Naidu<o:p></o:p></p>
</div>
</body>
</html>