Hi. All
Howto use external authentication for Freeradius.
Thank.
Sila S
Sila Sujjinanont wrote:
Hi. All
Howto use external authentication for Freeradius.
Thank.
Sila S
R E A D T H E D O C S .
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
On Mon, 2003-09-01 at 11:09, 3APA3A wrote:
Dear Dmitry Koval,
You messed up 2 things: 'authorize' and 'authenticate'. In terms of
FreeRADIUS you want to 'authorize' with external program. That is you
wanna call external program to add Password attribute to configure list.
Please
Dear Dmitry Koval,
You messed up 2 things: 'authorize' and 'authenticate'. In terms of
FreeRADIUS you want to 'authorize' with external program. That is you
wanna call external program to add Password attribute to configure list.
Please read doc/aaa.txt
--Saturday, August 30, 2003,
Hi everyone.
My problem is following:
I'm using freeradius 0.9.0.
I need to authenticate users by mschap v2.
The database is a quite sophisticated one in an Oracle.
So I want to authenticate by external script using Exec-Program-Wait.
With pap and chap it goes well, but with mschap it fails with
Torbjorn Tornkvist [EMAIL PROTECTED] wrote:
I did try that too and it didn't work. Look, here is an
excerpt from my users file:
Grab the latest CVS snapshot, there's a fix in it.
Alan Dekok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Hi,
How can I setup my Freeradius server so that
an external program does the authentication ?
I've seen this example from the users conf file:
tobbe Password == tobbe
Exec-Program = /usr/local/radius_auth.sh %u %w %y %g %h
But
Torbjorn Tornkvist [EMAIL PROTECTED] wrote:
How can I setup my Freeradius server so that
an external program does the authentication ?
See 'scripts/exec-program-wait'
Also, what '%'-macros are valid together with the Exec-Program
attribute ?
Have you tried reading the 'doc' directory?
How can I setup my Freeradius server so that
an external program does the authentication ?
See 'scripts/exec-program-wait'
Thats exactly what I did, but doesn't the entry:
bobPassword == bob
Exec-Program-Wait = /path/to/program/exec-program-wait
mean that the password sent
Torbjorn Tornkvist [EMAIL PROTECTED] wrote:
Thats exactly what I did, but doesn't the entry:
bobPassword == bob
Exec-Program-Wait = /path/to/program/exec-program-wait
mean that the password sent to the Radius server is bob ?
Yes. But you can also do:
bob Auth-Type :=
Darren Nay [EMAIL PROTECTED] wrote:
I am now seeing the Chap-Challenge in my authorization script. However,
I'm still having problems. This is probably stupidity on my side, but is
there some sort of pre-processing that I need to do before I can use the
Chap-Password and Chap-Challenge?
Darren Nay [EMAIL PROTECTED] wrote:
I've now got the server configured, but I'm having a problem
authenticating users. I keep getting a No Password configured for the
user error.
Yes, you're using Auth-Type := Local, which means a locally supplied
plain-text password. Since the DEFAULT
Ahh, that makes sense. Thanks again! It works great now.
One last question (I hope). :)
I'm using Ascend-Data-Filters and for some reason only one of the
Attributes is being sent in the reply.
Sending Access-Accept of id 234 to 1.2.3.4:1026
Service-Type = Framed-User
Oops.. Found the problem. I guess I need to use:
Ascend-Data-Filter += rules
..instead of..
Ascend-Data-Filter = rules
I've made the change it seems to be working great. Thanks again!
Darren Nay - [EMAIL PROTECTED]
On Sat, 12 Jan 2002, Darren Nay wrote:
I'm using
Hello All,
It seems I'm still having some CHAP authentication problems with
freeradius.
The problem is that I since I am doing the authentication via an external
script I do the password comparison in the external script as well, and
without a CHAP Challenge phrase then I am unable to compare
Darren Nay [EMAIL PROTECTED] wrote:
I know that in Cistron enable to use the Ascend Filters I had to comment
out some lines in the source that checked for duplicate attributes. Is
the solution the same here? If so, which lines, in which file?
No. Please read 'man users'. You've got to
Hello All,
As a radius server I am currently using XTRadius, which is based on
Cistron but allows external authentication/accounting for ALL users with
only one entry in the users file.
Is this possible with FreeRadius? I am currently doing all my external
auth and accounting using perl
Darren Nay [EMAIL PROTECTED] wrote:
As a radius server I am currently using XTRadius, which is based on
Cistron but allows external authentication/accounting for ALL users with
only one entry in the users file.
Is this possible with FreeRadius?
Yes.
I am currently doing all my
. Is that possible? If so, how?
Thanks a lot!
Darren Nay - [EMAIL PROTECTED]
On Fri, 11 Jan 2002 [EMAIL PROTECTED] wrote:
Darren Nay [EMAIL PROTECTED] wrote:
As a radius server I am currently using XTRadius, which is based on
Cistron but allows external authentication/accounting for ALL users
Darren Nay [EMAIL PROTECTED] wrote:
Thanks for your reply. I am still a little confused though. As I look at
the configuration I see that I can use the following as arguments for
Exec-Program.
... That doesn't really matter.
See 'scripts/exec-program-wait' in the latest CVS snapshot.
Alan,
Thanks for your help! That did answer my question.
I've now got the server configured, but I'm having a problem
authenticating users. I keep getting a No Password configured for the
user error. Being used to Cistron/XtRadius I'm not familiar with the
radiusd.conf file and it is a
21 matches
Mail list logo