Verschlüsselte Übertragung von Passwörtern

2011-02-11 Thread Marius.Meisner
Hello, I'am searching for a good way to secure the transmission of passwords with decryption between clients and a radius-server (there is no NAS between) without client zertificates. At the moment I use default PAP configuration. Which ways are possible? Any hind, how I get this working or

Re: Verschlüsselte Übertragung von Passwörtern

2011-02-11 Thread Marius.Meisner
Hallo Alan, thx for your response. But there is still a question left. Am 11.02.2011 15:08, schrieb Alan DeKok: Marius.Meisner wrote: I'am searching for a good way to secure the transmission of passwords with decryption between clients and a radius-server (there is no NAS between) without

Re: Verschlüsselte Übertragung von Passwörtern

2011-02-11 Thread Marius.Meisner
Hi Alan, thx for your quick reply. Am 11.02.2011 17:14, schrieb Alan DeKok: Marius.Meisner wrote: Which encryption is used - or is the shared secret meant? Read RFC 2865. This is the FreeRADIUS list, and not really a place for generic how does RADIUS work questions. Sorry for taken

Re: Second SSH with Freeradius based authentication

2011-02-11 Thread Marius.Meisner
Hi JK, I am not close with RE, but in Debian you may need the packet libpam-radius-auth. I have chosen the way over PAM Module to communicate between radius and sshd. So you may configure files like /etc/pam.d/sshd - if its the same under RE. MM Am 12.02.2011 00:03, schrieb Jaikanth

Re: Second SSH with Freeradius based authentication

2011-02-11 Thread Marius.Meisner
Hi JK, I am not close with RE, but in Debian you may need the packet libpam-radius-auth. I have chosen the way over PAM Module to communicate between radius and sshd. So you may configure files like /etc/pam.d/sshd - if its the same under RE. MM Am 12.02.2011 00:03, schrieb Jaikanth

Re: SSH-Login libpam-radius-auth

2011-01-29 Thread Marius.Meisner
and gets the password out of its entries, without looking for the other ones. So everything works fine until the next project ;-) Greets MM Am 28.01.2011 09:38, schrieb Alan DeKok: Marius.Meisner wrote: If I try to authenticate from ssh I receive this message: rad_recv: Access-Request packet

SSH-Login libpam-radius-auth

2011-01-27 Thread Marius.Meisner
Hi, I have a problem with passwor-matching. Everything seams to be all right, but radius still won't accept shared_secret. I use radius with mysql-database for ssh authenticate. If I try to authenticate with radtest on server (10.10.10.11) - it works fine. If I try to authenticate vom client

2-factor-authentication with freeradius

2011-01-25 Thread Marius.Meisner
Hi I'm trying to develop a two-factor-authentication with freeradius (if there isn't something compareable). For this I want to use first pap-authentication from freeradius. After that I want radius to ask for a second password and call a script which is sending a otp over an sms-gateway to the

Re: SSH with Radius on one Server: no password match by authentication over sshd --- password match over NTRadPING

2011-01-24 Thread Marius.Meisner
Thx - you make my day. I havn't seen the first entry in clients.conf for localhost with the lot of comments. Now it works fine. Am 24.01.2011 08:35, schrieb Johan Meiring: On 2011/01/24 02:00 AM, Marius.Meisner wrote: /etc/pam_radius_auth.conf:* # server[:port] shared_secret timeout

SSH with Radius on one Server: no password match by authentication over sshd --- password match over NTRadPING

2011-01-23 Thread Marius.Meisner
Hello, I'm a freeradius beginner and can't get further by my problem for days - reading a lot of stuff in dokumentation, books and forums on the net. Using a debian system with freeradius 2.04 and OpenSSH_5.1p1 Debian-5, OpenSSL 0.9.8g 19 on it - no NAS or other authenticator is used. Installed

Help - SSH with Radius on one Server: no password match by authentication over sshd --- password match over NTRadPING

2011-01-23 Thread Marius.Meisner
Hello, I'm a freeradius beginner and can't get further by my problem for days - reading a lot of stuff in dokumentation, books and forums on the net. Using a debian system with freeradius 2.04 and OpenSSH_5.1p1 Debian-5, OpenSSL 0.9.8g 19 on it - no NAS or other authenticator is used. Installed