Re: proxy question

2011-06-09 Thread Doty, Seth
wrote: Doty, Seth wrote: Currently I have a wireless setup that terminates the outer tunnel locally then queries AD to get group/user data. This happens for the realm named after the domain,the default realm, and NULL realm and works perfectly. What I need to do now is add a new realm

proxy question

2011-06-03 Thread Doty, Seth
Currently I have a wireless setup that terminates the outer tunnel locally then queries AD to get group/user data. This happens for the realm named after the domain,the default realm, and NULL realm and works perfectly. What I need to do now is add a new realm (testrealm)that terminates the eap

Re: Active directory groups

2011-05-20 Thread Doty, Seth
I must be doing something wrong in my filtering because it keeps dumping me into unclassified instead of passing the group I assigned. I have setup a security group specifically for this test and i am indeed in the group. I set it up like this in sites-enabled/inner-tunnel because it seemed this

Re: Active directory groups

2011-05-20 Thread Doty, Seth
search in dc=ad,dc=ne,dc=gov, with filter (CN=seth.doty) rlm_ldap: ldap_search() failed: Operations error [ldap] search failed rlm_ldap: ldap_release_conn: Release Id: 0 ++[ldap] returns fail On Fri, 2011-05-20 at 15:26 +0100, Phil Mayers wrote: On 20/05/11 15:14, Doty, Seth wrote: I must

Re: Active directory groups

2011-05-20 Thread Doty, Seth
that at least lets me know that my syntax is correct, even if the information I am receiving from the local LDAP folks is not. Thanks for your help. On Fri, 2011-05-20 at 17:03 +0100, Phil Mayers wrote: On 20/05/11 16:27, Doty, Seth wrote: I changed my baseDN to: basedn = ou=test,dc=AD,dc=ne,dc=gov

Active directory groups

2011-05-18 Thread Doty, Seth
I have looked on the list for this a few times but there doesn't appear to be a how to, just an it might work. We are wanting to use freeradius with our wireless controller for .1x termination. It will need to authenticate to AD and based on the returned group hand back different attributes to

mschap MS isa error

2011-05-12 Thread Doty, Seth
I have downloaded and installed the git repo version of what will become 2.1.11 on May 10 because of a proxy bug that is fixed in this version. In our current testing setup freeradius takes all information from the realm and passes in to a MS network policy server for authentication into AD. The

RE: Freeradius and Microsoft NPS

2011-04-13 Thread Doty, Seth
@lists.freeradius.org [freeradius-users-bounces+seth.doty=nebraska@lists.freeradius.org] On Behalf Of Phil Mayers [p.may...@imperial.ac.uk] Sent: Tuesday, April 12, 2011 5:07 PM To: freeradius-users@lists.freeradius.org Subject: Re: Freeradius and Microsoft NPS On 04/12/2011 07:32 PM, Doty, Seth wrote

Freeradius and Microsoft NPS

2011-04-12 Thread Doty, Seth
I couldn't find anything in the archives with this error and i am fairly new to freeradius config anyway so i thought this would be a good start. We are looking to authenticate wireless users through freeradius and Microsoft NPS. Our outer authentication is PEAP and terminates at the radius

RE: Freeradius and Microsoft NPS

2011-04-12 Thread Doty, Seth
-users-bounces+seth.doty=nebraska@lists.freeradius.org] On Behalf Of Phil Mayers [p.may...@imperial.ac.uk] Sent: Tuesday, April 12, 2011 12:00 PM To: freeradius-users@lists.freeradius.org Subject: Re: Freeradius and Microsoft NPS On 12/04/11 16:34, Doty, Seth wrote: I couldn't find anything