Re: local ssh authentication via radius possible?

2007-11-23 Thread Alan DeKok
Dan Gahlinger wrote: > How do I configure PAM to use radius? See the documentation in the pam_radius_auth module. It's on the freeradius web page. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

RE: Problem with CHAP

2007-11-23 Thread tnt
You are not sending that username: User-Name = "chap" Put usuario3 as a username on XP PC. Ivan Kalik Kalik Informatika ISP Dana 23/11/2007, "Javier Fernando" <[EMAIL PROTECTED]> piše: > >I think that this is a CHAP USER: > >usuario3 Cleartext-Password := "testusuario3" > >How to add a Chap

RE: Problem with CHAP

2007-11-23 Thread Javier Fernando
I think that this is a CHAP USER: usuario3 Cleartext-Password := "testusuario3" How to add a Chap user to the users file? Javier. > > Do you have user chap in your users file? You have posted entries for> some > > other usernames.> > Ivan Kalik> Kalik Informatika ISP> > > Dana 23/11/2007,

Re: Problem with CHAP

2007-11-23 Thread tnt
Do you have user chap in your users file? You have posted entries for some other usernames. Ivan Kalik Kalik Informatika ISP Dana 23/11/2007, "Javier Fernando" <[EMAIL PROTECTED]> piše: > >I configure Freeradius , when the client try to connect with CHAP i have this >error, and only connect wi

RE: local ssh authentication via radius possible?

2007-11-23 Thread Dan Gahlinger
How do I configure PAM to use radius? > Date: Wed, 21 Nov 2007 21:45:32 +0100 > From: [EMAIL PROTECTED] > To: freeradius-users@lists.freeradius.org > Subject: Re: local ssh authentication via radius possible? > > Dan Gahlinger wrote: >> I understand that

Problem with CHAP

2007-11-23 Thread Javier Fernando
I configure Freeradius , when the client try to connect with CHAP i have this error, and only connect with linux system users. When I connect locally with radtest i connect ok but when i connect remotely whit Windows Xp using CHAP don't connect. I run radius in debug mode with -X option. Part

Re: Is it something wrong in EAP-TLS ?

2007-11-23 Thread Alan DeKok
OLIVER Patrice wrote: > I try to use EAP-TLS authentication. With which version of FreeRADIUS? > Here is a part to the debugging messages : ... > rlm_eap: SSL error error::lib(0):func(0):reason(0) > In SSL Handshake Phase > In SSL Accept mode > > What's about this error ? It look

Is it something wrong in EAP-TLS ?

2007-11-23 Thread OLIVER Patrice
Hello, I try to use EAP-TLS authentication. Here is a part to the debugging messages : rlm_eap_tls: Length Included eaptls_verify returned 11 (other): before/accept initialization TLS_accept: before/accept initialization TLS_accept: SSLv3 read client hello A TLS_accept: SS

Re: radwho does not show me any user

2007-11-23 Thread OLIVER Patrice
-Original Message- From: Alan DeKok <[EMAIL PROTECTED]> To: FreeRadius users mailing list Date: Fri, 23 Nov 2007 11:04:35 +0100 Subject: Re: radwho does not show me any user > OLIVER Patrice wrote: > > When I use the radwho utility to know actually connected radius users. > > It returns m

Re: radwho does not show me any user

2007-11-23 Thread Alan DeKok
OLIVER Patrice wrote: > When I use the radwho utility to know actually connected radius users. > It returns me an empty list since I'm actually connected and authenticated. Your NAS is not sending accounting packets. They are needed in order to create and update the database used by radwho.

radwho does not show me any user

2007-11-23 Thread OLIVER Patrice
Hello, When I use the radwho utility to know actually connected radius users. It returns me an empty list since I'm actually connected and authenticated. Yesterday, I saw that the radutmp file did not exist. So I created it with 600 permissions. The radiusd.conf has been setup like this :

Re: Expiration attribute

2007-11-23 Thread Marinko Tarlac
Thanks Ivan Best regards Message: 3 Date: Thu, 22 Nov 2007 07:51:41 +0100 From: <[EMAIL PROTECTED]> Subject: Re: Expire attribute To: "FreeRadius users mailing list" Message-ID: <[EMAIL PROTECTED]> Content-Type: text/plain; charset=ISO-8859-2 Attribute name is Expiration. It is a check

Re: Exec-Program-Wait

2007-11-23 Thread Alan DeKok
Felipe Ceglia - PY1NB wrote: > I am trying to setup a "prepaid" style system on my freeradius. All I > want is to check user name against a perl script that will let user get > in or not. You should use rlm_perl rather than Exec-Program-Wait > I put this on users file, but the script is not bei

Re: Freeradius doesn't work with ldap

2007-11-23 Thread Alan DeKok
Eduardo Lima wrote: > How do I make passwords hashes in ldap?? What kind of hashes? If you want NT hashes, use the "smbencrypt" program that comes with the server. > Do I have to create all the passwords again??? Very likely, yes. The web page should make this clear. Alan DeKok. - List

Re: Configuring LEAP for freeradius

2007-11-23 Thread Alan DeKok
Gaurav Bandekar wrote: > I wanted to know how to configure EAP-LEAP on FreeRadius Server. Use the default configuration. Tell the server a "known good" password for the user. e.g. the FAQ gives an example. Once that's done, LEAP will work. Alan DeKok. - List info/subscribe/unsubscribe?