Two different sets of Group Authentication

2011-05-26 Thread Raheel Itrat
Hi, Currently I am authenticating only One group of users in Cisco Switches group. Now, I have to add another VPN group and distinguish between two sets of group autentication , VPN Users, and Cisco switches. I'd like to control access to each of those separately (different AD Groups

How to setup Ubuntu server as a client of FreeRadius Server

2011-05-14 Thread Raheel Itrat
Hi, I have a Linux(Ubuntu) NMS server and I want it to be authenticated Via Freeradius. So If I log into that NMS server it should send requests for authentication to FreeRadius serve. Also, can a windows XP machine be authenticated through Freeradius? I mean not the telnet/SSH login but

FR and AD with ntlm and Users group

2011-04-11 Thread Raheel Itrat
Hi, I am authenticating my Cisco devices by integrating FreeRadius with Active Directory. Not using LDAP but ntlm_auth. Now If I make a group on my AD server for example Router Admins and put some users in it. Now, where would I define in the FreeRadius that only users from Router Admin

How to make a NAS(Cisco) send MSCHAP request

2011-04-03 Thread Raheel Itrat
Hello, To all Cisco guys out there how can I make a NAS(Cisco 2960 switch) to send MSCHAP requests to FR server instead of PAP requests. Thanks, Raheel - List

RE: Ignoring reqest from unknown client

2011-04-02 Thread Raheel Itrat
Already done that Alanrelevant files attached in my last post.. Date: Sat, 2 Apr 2011 12:48:41 +0200 From: al...@deployingradius.com To: freeradius-users@lists.freeradius.org Subject: Re: Ignoring reqest from unknown client Raheel Itrat

RE: Ignoring reqest from unknown client

2011-04-02 Thread Raheel Itrat
@lists.freeradius.org On Sat, Apr 2, 2011 at 5:52 PM, Raheel Itrat raheel...@hotmail.com wrote: Already done that Alanrelevant files attached in my last post.. You should read the files you sent. your radiusd.log clearly shows only one client recognized: client localhost { ipaddr

AD Integration -No Auth Type

2011-04-02 Thread Raheel Itrat
Hi, Trying to integrate AD with FR I have successfully joined the domain and also ntlm_auth status as per attached file is OK But when I telnet to my cisco switch I get the subjected error. The relevant files are attached. Im using FR 2.1.0 for 2.1.0

RE: version error rlm_exec module

2011-04-01 Thread Raheel Itrat
Date: Fri, 1 Apr 2011 07:30:07 +0200 From: al...@deployingradius.com To: freeradius-users@lists.freeradius.org Subject: Re: version error rlm_exec module Raheel Itrat wrote: I am getting this error while I installed a 2.1.0 version. How do I delete

version error rlm_exec module

2011-03-31 Thread Raheel Itrat
Hi, I am getting this error while I installed a 2.1.0 version. How do I delete the older version of freeradius? Kindly let me know the exact command to remove all files of older version. radiusd: Instantiating modules instantiate { /usr/local/etc/raddb/modules/exec[25]: Invalid

RE: version error rlm_exec module

2011-03-31 Thread Raheel Itrat
Sorry the path is as follows instantiate { /etc/freeradius/modules/exec[25]: Invalid version in module 'rlm_exec' Errors initializing modules From: raheel...@hotmail.com To: freeradius-users@lists.freeradius.org Subject: version error rlm_exec module Date: Fri, 1 Apr 2011 10:19:43 +0500

FW: configuring freeradius to use Ntlm_auth

2011-03-28 Thread Raheel Itrat
Well, even if I follow that guide it says to do a lot of things like as follows: Create a file raddb/modules/ntlm_auth, and put the following text in it: exec ntlm_auth { wait = yes program = /path/to/ntlm_auth --request-nt-key --domain=MYDOMAIN

configuring freeradius to use Ntlm_auth

2011-03-26 Thread Raheel Itrat
Hi , I am following the link http://deployingradius.com/documents/configuration/active_directory.html to integrate AD with freeradius I have done configuration changes as per the attached files Now when i run the radtest radtest user password localhost 0 testing123 I get Accept

Radius Integration with Active Directory

2011-03-25 Thread Raheel Itrat
Hi all, I have installed a freeradius machine on ubuntu server, now my boss wants me to integrate it with the Active directory so that the users can be authenticated through it. I was wondering design wise does it make sense to have a free radius server in between if we can run radius on the

RE: Radius Integration with Active Directory

2011-03-25 Thread Raheel Itrat
Alright thats from performance point of view, but if we integrate it with Active Directory then wouldn't that be a security issue to use protocol like NTLM?. I'd appreciate if someone can provide me a good howto link for freradius integration with Microsoft AD Date: Fri, 25 Mar 2011

RE: authenticate via etc/shadow intead of users

2011-03-22 Thread Raheel Itrat
] On Behalf Of Raheel Itrat Sent: Monday, March 21, 2011 3:11 PM To: freeradius-users@lists.freeradius.org Subject: RE: authenticate via etc/shadow intead of users Thanks Alan, what I am actually trying to achieve is to authenticate users against our Linux /etc/shadow or /etc/password/ files. I don't

authenticate via etc/shadow intead of users

2011-03-21 Thread Raheel Itrat
Hi, I am a newbie to free radius, I need to know what changes are required in radiusd.conf or any other file in order to authenticate clients requests through local machine users(etc/passwd or etc/shadow) instead of making users in the raddb/users file. Cheers

RE: authenticate via etc/shadow intead of users

2011-03-21 Thread Raheel Itrat
Thanks Alan, what I am actually trying to achieve is to authenticate users against our Linux /etc/shadow or /etc/password/ files. I don't want to use the USERS file as it stores passwords in clear text which is what we're trying to avoid. Hi, I am a newbie to free radius, I

RE: Help required in Free Radius Debug Output

2011-03-17 Thread Raheel Itrat
Here is my Users file. Let me know if there is something wrong with it. testing Cleartext-Password := password # Please read the documentation file ../doc/processing_users_file, # or 'man 5 users' (after installing the server) for more information. # # This file contains

RE: Help required in Free Radius Debug Output

2011-03-17 Thread Raheel Itrat
Here is my complete debug output. reread_config: reading radiusd.conf Config: including file: /usr/local/etc/raddb/proxy.conf Config: including file: /usr/local/etc/raddb/clients.conf Config: including file: /usr/local/etc/raddb/snmp.conf Config: including file:

Help required in Free Radius Debug Output

2011-03-16 Thread Raheel Itrat
Hi, I am using Free readius version 1.1.7 on Ubuntu9.1, After installation I tried to check by editing the users file(etc/freeradius/users) by typing the following on the top and saved it testing Cleartext-Password := password Next i did radtest testing password 127.0.0.1 0