"Rick Whitley" <[EMAIL PROTECTED]> wrote: > Here is another example of the debug output. If this is not enough > information please let me know what I can send. Also we are using Cisco > 350 APs.
Ok... > rad_recv: Access-Request packet from host 10.5.10.2:1645, id=185, > length=119 > User-Name = "leec1779" ... > EAP-Message = 0x0202000d016c65656331373739 ... > rad_check_password: Found Auth-Type LDAP > auth: type "LDAP" > modcall: entering group Auth-Type for request 9 > rlm_ldap: - authenticate > rlm_ldap: Attribute "User-Password" is required for authentication. What part of that message is unclear? There is no User-Password in the request, so the LDAP module can't authenticate it. Since you're using Cisco AP's, and they're sending EAP data, you *may* want to think about enabling the EAP module. Do you understand how EAP works, and what AP's do? Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html