Radius Manager is an easy to use administration and billing solution for Mikrotik, Cisco, StarOS, ChilliSpot, pfSense NAS and various CMTS devices. It can be used in wireless, dialup and DOCSIS cable systems. Radius Manager supports Byte and time capping, bandwidth shaping, prepaid and postpaid accounts. Automatic disconnection feature for expired accounts with all supported NAS types.
It supports Unix account synchronization to synchronize the email accounts with the RADIUS database. A separate control panel is available for administrators and regular users. Includes an integrated prepaid card generator.
Billing module generates invoices for both postpaid and prepaid users. PayPal, Authorize.net, DPS, Netcash online payment gateways are supported.
TCP/UDP connection logger module is available in CTS version. Top 4 Download periodically updates software information of Radius Manager 4.2.0 full version from the publisher, but some information may be slightly out-of-date. Using warez version, crack, warez passwords, patches, serial numbers, registration codes, key generator, pirate key, keymaker or keygen for Radius Manager 4.2.0 license key is illegal and prevent future development of Radius Manager 4.2.0. Download links are directly from our mirrors or publisher's website, Radius Manager 4.2.0 torrent files or shared files from free file sharing and free upload services, including Rapidshare, HellShare, HotFile, FileServe, MegaUpload, YouSendIt, SendSpace, DepositFiles, Letitbit, MailBigFile, DropSend, MediaMax, LeapFile, zUpload, MyOtherDrive, DivShare or MediaFire, are not allowed! Your computer will be at risk getting infected with spyware, adware, viruses, worms, trojan horses, dialers, etc while you are searching and browsing these illegal sites which distribute a so called keygen, key generator, pirate key, serial number, warez full version or crack for Radius Manager 4.2.0 download.
These infections might corrupt your computer installation or breach your privacy. A keygen or key generator might contain a trojan horse opening a backdoor on your computer. Hackers can use this backdoor to take control of your computer, copy data from your computer or to use your computer to distribute viruses and spam to other people.
5 Votes Finally DMA has released its new version for Radius Manager Billing System. Complete info can be found here. Cd /etc/mail/certs openssl dsaparam 1024 -out dsa1024 -out dsa1024.pem (It will ask you various questiosn, just enter them accordingly, like country code, for Pakistan its PK, and other information you have) openssl req -x509 -nodes -days 3650 -newkey dsa:dsa1024.pem -out /etc/mail/certs/mycert.pem -keyout /etc/mail/certs/mykey.pem (It will ask you various questiosn, just enter them accordingly, like country code, for Pakistan its PK, and other information you have) openssl req -x509 -new -days 3650 -key /etc/mail/certs/mykey.pem -out /etc/mail/certs/mycert.pem.
UPDATED: 10th JUNE, 2013 Following is a short reference guide for DMASOFTLAB Radius Manager Part- 1) Installation Of RM with some TIPS, Part- 2) Complete Backup for RM and RM DB, Part- 3) Restore RM Data to new Installation. PERSONNEL NOTE: Please note down that you can get better installation instructions in detail from DMASOFTLAB official manual. This guide is a extracted version of original manual. Please consult with the original manual and dma helpdesk for official support. I have no affiliation with the DMA, its just my personnel experience you are seeing in this guide. It can be wrong, or might not be working as per your requirements.
Just drop me an message or email for any correction or pointing. Aacable at hotmail.com Thank you Syed Jahanzaib Part-1 # Installation of Radius Manager 4.x on Ubuntu 10.4 32/64 bit versions DMASOFTLAB Radius Manager 4.0 Short reference manual guide for UBUNTU 10.4.
32 /64 Bit Version If you have 64bit OS, then you have to download compatible 64bits packages from the dmasoftlab download section, just note down the 32bit files in this guide, and download 64bit version of same package from the DMA page. After you have installed Ubuntu, configure IP address and enable internet access on it. Now open Terminal Window and issue the below command to install required Modules. But make sure you do update ubuntu before doing any further process. Create temp directory where you will download things. Radiusd -X You will see something like below./install.sh Now the install script will ask few questions.
Select answers as per your local design. /usr/local/etc/raddb/sql.conf ↓ ↓ 2#:Blank page is showing while accessing admin.php If you see blank page while accessing admin.php, following could be wrong.
A- Your license files are not valid or expired. B- you have not installed ioncube library correctly. To test if your license is valid, tail the /var/log/apache2/access.log and error.log, they will show you if your license have issues like expired or invalid dueto mac address restrictions. To test IONCUBE LIBRARY, Open Terminal and Type. With the ionCube PHP Loader v4.2.2, Copyright (c) 2002-2012, by ionCube Ltd. ↓ 3#: Incorrect User name & Passowrds in Mikrotik LOG you are seeing ‘Incorrect user name and password error’ in mikrotik logs for the users created on RM, then make sure you have defined correct password in /usr/local/etc/raddb/sql.conf ↓ 3#: NAS NOT FOUND in RADTEST If you see NAS NOT FOUND in radtest, please see the heading “Testing Radius via radtest“. If the hostname is different than localhost, (like you have some other hostname name for the machine e.g: radius, then Edit /etc/hosts and change the system name to local host ip i.e 127.0.0.1 As showed in the example below.
Don’t forget to restart radiusd after making changes to the NAS list! Gzip -f /backup/dbfulltypecurrentdate.sql (Tip# To unzip the. Gz file, use gzip -d filename.gz ) Part-3 # Restore Backup If somehow your server crashes, and you got to re-built it from scratch, you can restore the database using below procedure. (To simplify things, use the same OS) 1) Install OS (Same as previous one, in this example Ubuntu) 2) Install RM with the same same config you used for previous installation, e.g: radius db passwords and folders locations 3) Restore all the folders from the backup to there original locations.(backup that taken in part-2 backup part) 4) Now its time to restore mysql radius DB, use the below command to restore DB in mysql.
Define('maillocaldomain', 'xyz.com'); // default domain name Now configure some settings in ACP / Systems / Ssytem Settings ↓ HOWTO REPLACE/MODIFY DMASOFTLAB RM LOGO and TEXT!!! You can Replace/Edit the default DMASOFTLAB logo files. By default, Images are available where you have installed the radiusmanager. Look into the images folder of radiusmanager. For example I installed RM in /var/www/html/radiusmanager. There will be a folder name ‘images’ Look for these files. Dmalogosmall.gif radmanlogosmall.gif main101.gif main102.gif main103.gif emailheader.gif ↓ Edit Various Text/headings Show at UCP/ACP You can also edit the texts/descriptions in language description files in r adiusmanager/lang/english folder.
Look for texts.txt and strings.txt ↓ To Add Logo in Prepaid Cards You can modify its base image at radiusmanager/lang/english/card folder. Look for classicbg.png and refillbg.png More info, you can look at To be continued. Regard’s Syed Jahanzaib aacable at hotmail.com. 14 Votes Article by Syed Jahanzaib DMASOFTLAB Radius Manager have a very nice feature of SMS notification for New Account Activation Message, New Account Activation Verification Code / Password Recovery and many other cool functions that can be done using this feature, however activating it is a bit complex thing to do.
As radius manager supplies clickatell HTTP gateway API with there default installation, and I really didn’t wanted to purchase the clickatell account because it would be expensive for any mid-large size network, even a small network wouldn’t want to pay extra amount. So I decided to create my own HTTP gateway which is connected with my GSM Modem. Following is the complete guide on how you can create your own SMS HTTP GATEWAY. Once you have a working HTTP gateway, you can move on to RM configuration section.
Howto configure API to make it work with your Local SMS HTTP gateway. Login to your RM box using terminal. Open the api.php file by nano /var/www/radiusmanager/api/api.php (Change the path if you have RM installed at some other folder) Now remove all lines and replace them with the following. (Change the $apiuser to match your kannel config). ? That’s It. Your RM is ready to send sms using your local SMS HTTP gateway.
Howto send Account Expiry Warning to User via email Logon to RM Admin Panel, Goto System/ System Settings At the bottom of the page, You will see Notification’s section. At the Expiry warning: Type the number of days you want RM to send account expiry warning before the account expires. Also tick on all related options as showed in the image. As showed in the image below. Once the account reaches near its expiry, user will receive email like below.
Howto Recover User Password via FORGOT PASSWORD link at user.php (ver 4.x or above) User can recover his forgotten password using Forgot my password at user.php For Example. After submission the mobile number, user will receive A code on his mobile number (If he have defined valid number while registering the account. Then after entering the code in the below screen, he will receive new password. As showed in the image below. Regard’s Syed Jahanzaib. 10 Votes Scenario # We have created 512k service for the users, In late night, our bandwidth is usually not much used because only limited number of users uses the internet in late timings. Therefore we want to increase users bandwidth from 512k to 1mb automatically in night 12:00am till 12:00pm we will divide this article in three sections.
1) Mikrotik Section (For Adding API): 2) Radius Manager Section (For Adding API): 3) Adding Service & Plan in Radius Manager: Mikrotik Section (For Adding API): We have to first configure API both in Mikrotik & DMASOFTLAB RM Panel. Goto IP Services & enable API service. As showed in the image below.
Now create API user so it can be used by RM to connect to MT. Goto SYSTEM USERS and add new user by click on + icon. User name = api Password = api (or anything else) As showed in the image below. Radius Manager Section (For Adding API): Open Radius Manager Admin Panel, Goto NAS LIST NAS Select your Mikrotik NAS Click on ENABLE MIKROTIK API Define API user name & Password that we added in mikrotik section.
As showed in the image below. Adding Service & Plan in Radius Manager: First Create a normal service profile ( 512k) using Radius Manager Admin Panel. As showed in the image below. Now Click on EDIT button on Special Bandwidth Periods section at the bottom of the page.
As showed in the image below. Now click on NEW PERIOD As showed in the image below. Enter your desired timings (in this example I used night 12 till day 12) in which you want to allow excess/reduced bandwidth. After done, click on ADD PERIOD As showed in the image below. After You see the new Special Bandwidth Periods close this popup window. As showed in the image below. Click on the UPDATE SERVICE on main service window.
Now create any user and test it by modifying timings (for test or quick results) As showed in the image below. Regard’s Syed Jahanzaib. 11 Votes DMASOFTLAB Radius Manager 4.0.4 have interesting feature of email notifications for various events like account expiry warning, account renewal notification, send custom email to all users, password recovery via email verification code and many more.
By default RM uses authentication less smtp server of your ISP, but in most cases Email sent from the RM box arrives in JUNK/SPAM folder in users email box, and sometimes bounces back due to black listed IP’s. This happens very frequent in my country as we widely use national telecom company internet service called PTCL, whose ip’s usually get blocked by many email services. Therefore I created this method by installing SENDMAIL in RM box, and uses my GMAIL account as SENDMAIL SMTP RELAY. This way RM sends mail via localhost, which uses valid GMAIL account to send email and email arrives in users INBOX directly First we need to configure sendmail with gmail smtp relay.
Use the below link to install. After you have verified your smtp server is working fine by sending test email to your Hotmail/gmail/yahoo mail account. You need to edit the following files. /etc/radiusmanager.cfg /var/www/radiusmanager/config/systemcfg.php SAMPLES: /etc/radiusmanager.cfg.
Define('maillocaldomain', '127.0.0.1'); // default domain name. Now Open RM ACP (Administrator Control Panel), Goto SYSTEM SYSTEM SETTINGS & check the following settings. As showed in the image below. Now Administrator & user will receive various Email Notifications. As showed in the images below.
Account Expiry before 5 Days (days are configurable via admin panel / home,settings). Welcome Message for newly registered users. Recover Password by Email. Account Renewed Notification.
Note: Please check JUNK email folder, because sometimes email gets in JUNK folder if your ISP ips are listed in any dns black list as spam. Mark it safe so future mails comes into INBOX directly. To edit various Texts appeared in the notifications, you can edit following files. /var/www/radiusmanager/lang/English/ mailaccrenewfailtpl.txt mailnewpswtpl.txt mailwarnexptpl.txt regterms.txt mailforgotpswtpl.txt mailselfregtpl.txt mailwarntrafftpl.txt strings.txt mailaccrenewedtpl.txt mailiasregtpl.txt mailsrvchgtpl.txt mailwelcomeusertpl.txt texts.txt /var/www/radiusmanager/ userlogintpl.htm -. Regard’s Syed Jahanzaib. 6 Votes Scenario # 1 = 1 mbps Speed limit, Fix Monthly Quota Base Service with Daily 300 Mb Download Quota limit, if the user cross the daily quota limit, his service will shift to lower speed profile i.e 256k for the current day, after date change, the user profile will revert back to 1mb. Details: Bandwidth Allowed = 1 mb User Expiry = 1 Month (after one month, user accounts will expire) User Monthly Traffic Quota = 1 gbps (after consuming 1gb total, account will expire) User Daily Traffic Quota = 300mb (After downloading 300mb in a day, user service will be changed to NEXT DAILY SERVICE of less speed i.e 256k daily service for the rest of the day.
After the date change, user service will be returned to normal i.e 1mb) Ok here we go. First Create New Service in RM using the following screenshots. Now create another new service using following screenshots. Now When the user will be registered using the user.php, he will first see the below account details.
After the user refills his account and purchase credit via user panel, his ID will be ACTIVE with the following info. After the user reaches above 300 MB in a single day, his service will be switched to NEXT DAILY SERVICE of zaib-256k-daily. NOTE: The Service change will not be implemented on the FLY, the user hotspot/pppoe session will be auto disconnected by Mikrotik on radius request, and when it will reconnect, the user will be using 256k service profile. Regard’s Syed Jahanzaib.
13 Votes At last, RM v4 have been released with good features, specially SMS for welcome/Expiry/warning messages. Complete Features added in v4 are as follows. Following is a my personnel experience / Guide on Howto configure a mini ISP type Network using following scenario. Recently I was contacted by a friend who was really passionate in starting a mini- ISP type network setup for about 3000 users in the interior area of city. (soon it may expand up to 5000+ users). He asked my help to setup a scratch card base fully automatic system where user purchase scratch card, & using User self care portal web site, user may create his new ID or refresh his previous ID or change the service package according to the card package offers. I had previously setup this kind of scenario in a cable.net environment using Mikrotik built-in radius server called ‘ User Manager’, but it have very limited basic features and all it can offer was a pre- paid type option and it doesn’t have many accounting features.
So I thought I should give a try to more rich feature radius server and after a lot of googling i decided to go with ( FREERADIUS base ) DMASOFTLAB RADIUS MANAGER. A very famous radius server with all the option that a mini-ISP would required at unbelievably low price. The hardware that I have used for this setup.Main Mikrotik = v4.17 x86 / Xeon 3.6Ghz Dual / 2 GB Ram / WD 500 GB Sata Hdd, This MT is serving as a PPPoE Server + NAT + bandwidth shaping. It also redirects HTTP traffic to Proxy server. Mikrotik RB750 = Just for HOTSPOT to redirect users to self care portal. (This can be done on Main MT also, but I prefer it this way).
Radius Server = DMASoftlab RM v3.9 installed on Fedora v10 / Xeon 3.6Ghz Dual / 4 GB Ram / WD 500 GB x2 Sata Hdd. SQUID PROXY GW = SQUID v2.7 on UBUNTU Karmic Koala v9.10 / Xeon 3.6Ghz Dual / 8 GB Ram / WD 500 GB x3 SATA HDD (2 HDD reserved for Cache), This server acts as a proxy + Gateway machine for the Mikrotik, It also do URL Filtering blocking ads, it also have ZPH enabled so content available in squid cache should be downloaded at full speed (without package limitation) at user end. Linux Transparent BRIDGE firewall + DHCP + DNS + MRTG + WEB Server on FEDORA V10 / Xeon 3.6Ghz Dual / 4 GB Ram / WD 500 GB SATA HDD, This server sits between Mikrotik and Users, filtering unwanted traffic, ports and do some other stuff like lightweight DNSMASQ DNS Server, DHCP server providing ips to users, Web Site with MRTG, Psychostats ranking system for Counter Strike Game, Server Monitoring Scripts and Alerts, PHPBB Forums for Users, and some other cool stuff. DNS+DHCP is hosted on this server to minimize load on main mikrotik machine, alos this machine filters unwanted traffic from passing by to main mikrotik. In this setup, I have configured HOTSPOT on extra RB750 only to redirect user to my advertisement page, where he is informed that he is not logged in via dialer, either create / refresh his ID from RM User Self Care Portal, or if he already have an id, connect it via dialer. I don’t prefer HotSpot authentication due to various security reasons, mainly due to I had a very bad experience having HOTSPOT hit by ARP-POISONING and many virus flooder that requires default gateway. When user first login, his PC MAC address is binded with his ID to prevent accessing it from different pcs.
Multiple session of same ID is NOT allowed, I provide user with scratch card (with refill code), which he can use to refill his account according to card amount/package from RM User self care portal. RM demo can be viewed at When users with pppoe dialer tries to connect to main Mikrotik, MT verifies its credentials by asking Radius Server for the account validity, if the ID is valid, user connects okay and can use internet, otherwise he gets disconnected. When the User account is expired, he still can login via dialer, but then he is redirect to my local web server page where he is informed that his account is expired and he should visit billing.local page to renew his account using the card. Please find along with attachment is my Network Diagram (This was initially designed, I made few changes afterward, I removed FTP from MT DMZ to user subnet lan to avoid load on MT, I moved ftp OS from windows to Linux and integrate it with radius authentication using APACHE. Some other entertainment services that I setup here were: 2 FTP Media Sharing Servers ( 4 TB of data ) based on Linux Apache with radius as back-end authentication 2 Live TV Channel streaming over LAN using VLC Media Player Broadcasting 1 Counter Strike 1.6 Dedicated Server with Psychostats Ranking System and adminmod/amxmod 1 Web Server (Ubunut) hosting site u-dear. Com, an entertainment portal and hosting other features.
It also features monitoring system with MRTG / SMS Alerts via attached Mobile. About RM: Radius Manager uses a nice web interface for administering the users and the whole system (traffic accounting, tracking of online users, display statistics, maintenance,account management etc.) and to add that DMASoftlab customer support guys (specially Mr. Viktor.K) have excellent support and respond instantly even to the dumbest of questions.
It is real value for money especially for those who do not have big budgets. We will distribute this article in following sections. Add action=disk disabled=no prefix=' topics=warning For General Mikrotik configuration, Please read the following post. For User ip redirection to SQUID configuration in Mikrotik, Please read the following post.
For FTP queue exemption in Mikrotik, Please read the following post. 2) SQUID SERVER CONFIGURATION using UBUNTU 9.1 Karmic Koala SQUID Server have two lan cards. One is connected with ISP WAN Other is connected directly with Mikrotik with cross over cable.
I used the following script to share the basic internet. Just copy all contents in any file, for example /etc/squid/fw.sh and paste the following content in it. Maxfiledescriptors 8192 For Basic Internet Sharing on Linux, please read the following post.
For basic SQUID configuration, Please read the following post. For fine tuned squid.conf, Please read the following post.
For ZPH configuration in squid, Please read the following post. (To deliver cache content to user in full lan speed, exempt cache content from queue) 3) RADIUS MANGER CONFIGURATION using FEDORA 10 The Real Giant:p MANAGER Version 3.9 INSTALLATION MANUAL © DMA Softlab LLC This RM installation guide is a shorter version, copied from DMASOFTLAB RM original manual.
I edited it and cut off all un-necessary paragraphs which are not required for basic installation and added some info of my personnel experience. For RM Screenshot gallery, please visit following link. This document describes the installation procedure of Radius Manager billing system on a Linux host using FEDORA 10. For beginners I recommend the usage of Fedora Core 10. Fedora Core is the easiest and the most comfortable Linux system for RM isntallation (Although I have tested in Ubuntu also, but still FED wins in few aspects) It comes with all required packages to install and run Radius Manager.
The packages are available on the installation media and they are also down-loadable from the official online repositories using the Yum tool. In this document You will also find guidelines on how to set up your NAS (mikrotik) to integrate with Radius Manager system. To successfully install Radius Manager on your host, You have to complete the following steps: 1. Install ionCube runtime libraries 2. Build and configure FreeRadius server 3. Configure MySQL database and credentials 4. Install Radius Manager WEB components 5.
Install Radius Manager binaries 6. Complete the post installation steps and fine tuning INSTALLATION Prerequisites: To successfully install and run Radius Manager, You need the following components installed on the Linux host, If they are not isntalled already, dont worrry we will install them in next step Software Requirements:. FreeRadius 2.1.8 DMA mod 2 (downloadable from ). PHP 5 or better.
MySQL 5 or better. MySQL development libraries. php-mysql. php-mcrypt. curl, php-curl. glibc 2.4 or better.
GNU C/C compiler. IonCube runtime libraries.
They are downloadable freely from and. Javascript enabled browser on running on client machines Preparing the Linux system Fedora 10 Install the necessary components on your Linux host before You begin the installation of Radius Manager. Disable SeLinux in /etc/sysconfig/selinux and reboot your host. Yum install make php php-mysql php-mcrypt mysql-devel mysql-server gcc libtool-ltdl Note: This will download and install about 60-70 mb of packages depends on you FED installation.
Be patience if you have slow internet connection Installation procedure of ionCube runtime system Radius Manager requires ionCube runtime libraries. You can download them from: Before installing ionCube, You have to know the following: 1. The architecture of your Linux system (32 or 64 bit) (usually 32bit pc is used in most cases, I will use 32bit only as example) 2. Which PHP version are You using (use php -v to view version info, hopefully you will get v5.2.9) 3. Where is your php.ini file located (On fedora its usually /etc/php.ini) Example ionCube installation 1.
First create a temp folder in root. Eth0 Link encap:Ethernet HWaddr 00:00:E8:EC:8A:E8 6. Now it’s time to request a license for your server. If this is first time, Ask to grant you id passwrod for customer portal. After getting Id, Log on to DMA Softlab customer’s portal and request a trial license for the hardware address (MAC address) of your network interface card.
Download game pes 2013 full crack. About This Game PES 2013 is an soccer video game like FIFA 13, developed and published by Konami. Pro Evolution Soccer 2013 returns to the roots of football with unique levels of control, great graphics and nice gameplay. PES 2013 is Soccer game with brillant graphics for a football fans on the PC.
Radius Manager will run only on the specified host and the license is binding to the MAC address of the network interface card. You can migrate Radius Manager to another host if You also move the same network interface card with it. It is strongly recommended to request a license for a removable networking interface to allow migration to new host without loosing the license. When a license file is issued (You will get a notification about it in email), download and copy the lic.txt and mod.txt to radiusmanager web directory (read the “Installation procedure of Radius Manager” chapter of this manual) to enable licensing of your Radius Manager installation. Troubleshooting the ionCube loader system If encoded files fail to run, you can test ionCube runtime by using the helper PHP script ioncubeloader-helper.php, which is included in the loader download archive. Copy the ioncube-encoded-file.php PHP script to your http root (on Redhat-based system it is /var/www/html).
Try to access the ioncube-encoded-file.php script using your favorite web browser. If You can see the message “This file has been successfully decoded. IonCube Loaders are correctly installed”, it means You have successfully installed ionCube runtime on your host and it is ready to use. If You can’t decode the file via a HTTP call, check the php.ini and be sure SeLinux is disabled. Installation procedure of FreeRadius Follow the installation steps to successfully build, install and configure FreeRadius RADIUS server on your host. Use only FreeRadius 2.1.8 DMA mod 2 source archive (downloadable from our site).
It is prepared and tested by our team and it is 100% compatible with Radius Manager. Other versions and builds will not function properly with Radius Manager. If your host already has a different FreeRadius version installed, remove it completely including it’s configuration files (/etc/raddb or /usr/local/etc/raddb). Execute the following actions as super user (root user): 1. Download FreeRadius archive in /temp folder from the following URL: by issuing following command.
Exit Completing this step the databases are ready to use. Installation procedure of Radius Manager There are two methods of installation available: 1. Interactive, using the included installer script. (We will focus on this as its easier for newbie) 2. Manual installation, using Unix commands. (We will not discuss it as its already briefly described in RM Manual) Interactive installation The easiest way to install Radius Manager is to use the included install.sh script.
It is located in Radius Manager tar archive and can be used on Redhat, Debian and (with slight modification of the environment) on other systems. Before You begin, be sure You have prepared the MySQL database tables and credentials. Radius Manager requires two databases: 1. RADIUS – for storing all system data, including users and accounting information. CONNTRACK – for storing connection tracking system (CTS) data. Create both databases even on a non-CTS enabled system. Now download RM (radiusmanager-3.9.0.tgz) from dma customer portal in /temp folder.
Now decompress the Radius Manager tarball using following command. CTS database password: conn123 For the default setup simply press enter and use MySQL user “radius” with password “ radius123” for RADIUS database, and conntrack / conn123 for CONNTRACK database. The host is “ localhost” by default. If You have different setup, specify proper values. If You are planning to use the system with hundreds of online users, it is recommended to use separate database host for CONNTRACK database. In the next step You have to define the FreeRadius user.
It must be the correct user to set the permission properly on /etc/radiusmanager.cfg. If there are permission problems on /etc/radiusmanager.cfg, Radius Manager binaries will not function at all.
Freeradius UNIX user: root On Fedora it is root, so simply press enter. Now define the HTTP user (the user name under Apache is running). It is required to set the permission on files in radiusmanager/config directory. On Fedora it is the apache user.
Httpd UNIX user: apache You can now decide to create rmpoller service or not? It is a standard Fedora / Debian compatible service script which invokes rmpoller helper. You can also start rmpoller using alternative ways. Create rmpoller service: y In most cases simply press enter. When a service has been created, You can use the command (on Fedora) service rmpoller start stop to control rmpoller service activity. Also make this service auto starting at boot time together with FreeRadius.
Use command chkconfig -add rmpoller on or use Webmin to activate the service at boot time. In the next step select yes if You want to create the rmconntrack service. It is a standard Linux service, like rmpoller.
It is required for Radius Manager CTS only. Create rmconntrack service: y When a service has been created, You can use the command service rmconntrack start stop to control rmconntrack service activity. Also make this service auto starting at boot time. It is strongly recommended to create a full database backup before You continue.
Answer ‘yes’ to the following question: Back up RADIUS database: y Now the system warns You it will overwrite the existing databases if You continue. Press ‘y’ to continue or ‘n’ to abort the installation process. 02 0. root /usr/bin/php /var/www/html/radiusmanager/rmscheduler.php 12345 Now press ESC button, now press SHIFT+:, now press wq it will save the crontab and exit. 12345 is the default password, as it is defined in systemcfg.php.
Always specify the full path of the PHP interpreter. If You are not sure, check it’s location before You add the crontab record. The password has to match the predefined one in systemcfg.php. Now download the the license files ( lic.txt and mod.txt) and copy them in in radiusmanager web folder. WISPr-Bandwidth-Max-Down = 262144 Acct-Interim-Interval = 60 You have to see Access-Accept answer. If You see an error message, check the following:. Is MySQL server running?.
Are MySQL credentials correct?. Are MySQL table permissions correct?. Can FreeRadius connect to MySQL database?. Have You created the RADIUS and CONNTRACK databases and tables?. Is the NAS defined in ACP? In this case it is 127.0.0.1?( NAS-IP-Address = 127.0.0.1). If the hostname is different than localhost, You have to substitute the localhost with the IP address of the Linux server.
You have to update the NAS list in RM ACP in this case. Now access the ACP (Administration Control Panel) by pointing your browser to and First add Mikrotik NAS device in ACP. Enter the ip address of Mikrotik. In Secret, type the secret that you will set in Mikrotik RADIUS (See below section / screenshot) Also test the functionality of the User Control Panel (UCP). Password: 1111 To be able to log on to UCP as another user, create the user in ACP first. System optimization Tips The performance of the entire Radius Manager system mainly depends on the speed of the hard disks and the MySQL subsystem.
If You encounter performance problems, check the following: 1. Check radacct table size. If it is large ( 300-500 MB), delete the old years from it using the deloldyears.sql script (included in the RM tar archive in doc directory). Add more RAM to the system.
Adding 2-4 GB of RAM doesn’t mean any problem nowadays. Use RAID 0 or RAID 5 array MySQL db storage devices. Optimize the MySQL server via my.cnf file.
Keybuffer=1024M myisamsortbuffersize=512M sortbuffersize=32M Set keybuffer = RAM size / 2, myisamsortbuffersize = RAM size / 4, sortbuffersize = RAM size / 64. Adding more RAM will drastically speed up the MySQL system. Indexes must be fit in the RAM for optimal performance.
Notes By default, many web servers can list the contents of the directory where Radius Manager files are stored. To prevent this there are several methods available: 1. Use.htaccess file. Enable the Options -Indexes directive In.htaccess file (example file is included in radiusmanager directory in the installation archive). Be sure to enable the htaccess support in order to use this feature (set AllowOverride All directive in httpd.conf).
Disable the directory listing in httpd configuration files. HOWTO REPLACE/MODIFY DMASOFTLAB RM LOGO and TEXT!!! You can Replace/Edit the default DMASOFTLAB logo files.
By default, Images are available where you have installed the radiusmanager. Look into the images folder of radiusmanager. For example I installed RM in /var/www/html/radiusmanager.
There will be a folder name ‘images’ Look for these files. Dmalogosmall.gif radmanlogosmall.gif main101.gif main102.gif main103.gif emailheader.gif Edit Various Text/headings show at UCP/ACP You can also edit the texts/descriptions in language description files in radiusmanager/lang/english folder.
Look for texts.txt and strings.txt To add logo in prepaid cards You can modify its base image at radiusmanager/lang/english/card folder. Look for classicbg.png and refillbg.png Some Example: MIKROTIK NAS CONFIGURATION Setting up RADIUS authentication and accounting To send authentication and accounting requests to Radius server, You have to configure your Mikrotik NAS. Use Winbox to view and edit the configuration. Follow these steps: 1. Connect to your Mikrotik router using Winbox. Select Radius from the main menu.
Click on the + to create a new RADIUS server description: (see the attached screenshot) Description of fields:. Service:. PPP: for PPP RADIUS authentication. Address is your RADIUS server host.
Eg 192.168.2.1. Secret is the NAS secret from /usr/local/etc/raddb/clients.conf e.g 12345. Authentication and Accounting ports are the standard RADIUS ports. Timeout defines how much milliseconds can elapse while the answer arrives from the RADIUS server. If You are using slower connection to RADIUS server or the accounting tables are large, set this timeout higher (3000-5000 ms). Now Set the AAA options of PPP service (PPPoE): Goto PPP / Secrets / click on PPP Authentication & Accounting Button, and see the following. Turn on RADIUS authentication (Use Radius) and RADIUS accounting (Accounting).
Interim update is the time interval when RADIUS client (Mikrotik NAS) sends the accounting information to the RADIUS server. If You have more than 200 online users, use higher values (5-8 minutes) to avoid MySQL overload. Now Enable incoming RADIUS requests (POD packets).
It is required to use the REMOTE disconnection method in Radius Manager: Don’t forget to open the UDP port 1700 in firewall on Mikrotik and Linux server. To Test the database connectivity: use the following command from RADIUS CLI. Mikrotik-Xmit-Limit=1028,Mikrotik-Rate-Limit=”244” (Where 192.168.2.1 is the MT IP) You have to see similar output to this. If there is a MySQL socket error, define the correct socket location in /etc/radiusmanager.cfg. The default socket file on Redhat is /var/lib/mysql/mysql.sock. On Debian systems the proper socket path is /var/run/mysqld/mysqld.sock. To successfully test rmauth, You have to create NAS entries in ACP.
Dmasoftlab 4.1 Cracked
In this example, the NAS IP You have to restart FreeRadius every time when You modify the NAS devices. Unfortunately FreeRadius doesn’t read the configuration files dynamically. ADDITIONAL SETUP Starting daemons at boot time Radius Manager system supports automatic startup of daemons: radiusd, rmpoller and rmconntrack. The automatic installer copies all the required scripts to /etc/init.d directory and sets the required permissions on them. The following methods are available to set up automatic service startup:.
Use Webmin to start services at boot time or. Use command chkconfig –add servicename (Fedora only) A chkconfig example follows. Chkconfig -add dnsmasq ADDED SECURITY: (My Suggestion, zaib) I placed this RADIUS Server on user subnet, which is not suitable, palce it on behind Mikrotik DMZ, then create a user in Mikrotik For example ‘user’ with restricted ip pool, and using FIREWALL rules, Restrict this id/ip to access only RADIUS Server, block all other access for this id / pass. This way user have to first dialin to open RM User Self Care Portal.
HOWTO ADD Service Plans in RM ACP & Generate Prepaid/Refill Cards: 256Kbps Monthly Service Plan Following is an example on howto add New Service and assosicate it with new user. Package = 256Kb Expiry = 30 Days Login to RM ACP, Goto Services and click on New Service. In Service Name. tpye ’256Kbps Monthly’ Click on ‘ Available in UCP‘ Click on ‘Limit Expiration’ on ‘ Set data rates’ (DL/UL) type 256 / 256 Now goto Bottom and in ‘Expiration Date Unit’ Select 1, Initial 0, and Finally, Click on Store Service Bottom in the End.
Done Your new service is created with 256Kbps Speed Limitation with 1 Month Up-Time Limitaion. Following are screenshot for the above created Service. Add Service – Image 2 Now we have created the new service, its time to create new user or generate pre-paid cards and assosciate them with this new service plan.
Rm-add-pre-paid-cards / [email protected] Service is ready to be used. HOWTO ADD QUOTA BASE SERVICE IN RM: Now we will Add Quota Base Service Plan.
Dmasoftlab Radius Crack
For example User is allowed to use 1GB @ 1mbps per Day, After using his 1 GB Quota, his service plan should auto switch to 256Kbps speed plan for the rest of teh day. We have to use DAILY SERVICE option in RM for this purpose.
First create Daily service with 256Kbps limitation, and then create the 1Mbps / 1Gb Daily Quota limit service and use the next dail service option in 1mb service plan to point it to 256k. First we will create 256Kbps service plan. This will be very simple basic plan. Open RM ACP, Goto Services, and create new service, and name it 256Mbps – Daily Service, rest of options can be set by seeing the image below. 1mb-1gb-quota-image-3 All Done. Now Simply generate cards or user ids and associate it with the 1mbps service. HOWTO SEND EMAIL NOTIFICATIONS / WARNING TO USERS BEFORE THERE ACCOUNT EXPIRE Goto Home / system settings, here you can set it.
4) LINUX TRANSPARENT FIREWALL BRIDGE CONFIGURATION using FEDORA 10 Following is a comprehensive guide on how you can setup Linux base Transparent bridge with advance firewall capabilities like DHCP Server MAC to IP binding restriction, Easily add remove clients via single file using text editor or WEBMIN, Also you can Port Filtering to block unwanted traffic from passing through. A bridge is a way to connect two Ethernet segments together in a protocol independent way.
Packets are forwarded based on Ethernet address, rather than IP address (like a router). Since forwarding is done at Layer 2, all protocols can go transparently through a bridge.You can think of a bridge like a advance manageable network switch/firewall/router. We will be using this Linux Transparent bridge according to the network diagram shown at the start of this article. The job of the bridge is to examine the destination of the data packets one at a time and decide whether or not to pass the packets to the other side of the Ethernet segment. The result is a faster, quieter network with less collisions.
You don’t need to change your existing network layout. You just plug in the bridge and you start working. If for some reasons, your Linux bridge box should go down, reconnect the cables from your bridge to your switch, and nobody will even notice that something was not working! The placement of the bridge would be something like. Web Configuration Now that the hardware has been completely installed, it's time to configure the Bullet to act as a WiFi Access Point. Configuration is performed using your web browser by typing in.
You'll get a warning pop up stating that the device has presented an invalid SSL certificate due to the certificate being self-signed and not issued by a CA. This is normal so just hit accept/continue.
You'll then need to log in with the default username and password of 'ubnt'. Configure the Wireless tab The first step is to configure the Wireless tab so the Bullet acts as a WiFi Access Point. Change the settings according to the below picture. Be sure to set the device up with WPA2 security and an appropriate WiFi password here. You can also use this tab to adjust the power output should you wish to cover a smaller area. The default channel bandwidth is 40MHz, but some older devices such as wireless printers and mobile phones cannot operate on.
Comments are closed.
|
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |