Re: Problems with 802.1x auth and Windows domain logon

2004-05-28 Thread Rinaldo Bergamini
PEAP gives the opportunity to solve this problem, but maybe there's an option in the windows 802.1x client that, if checked, passes the logon information...I thinks it's like Use computer information if available(?). Hope this helps... Michael Schwartzkopff wrote: we set up a system for 802.1x

Re: Had sent TLV failure, rejecting

2004-04-29 Thread Rinaldo Bergamini
Try setting: use_mppe = no with_nt_domain_hack = no in the mschap configuration in section modules of radiusd.conf I had the same problem, that tweak fixed it. Hope this helps, Rinaldo Bergamini Antonio Fernandes wrote: Hi! I've installed freeradius-snapshot

Proxying after local reject

2004-04-20 Thread Rinaldo Bergamini
Hi everybody. I'd like to differentiate users without using realms, my intention is to send the request (proxy) to another radius on another machine ONLY IF it is rejected by the first radius, is it possible? Thanks in advance. - List info/subscribe/unsubscribe? See

EAP/TLS general question

2004-04-13 Thread Rinaldo Bergamini
Hi everbody! I have a freeradius eap/tls working setup and now my sake is having different routing for different users-classes. By example, I need that a student of my campus isn't able to access subnets accessible by professors. I need to differentiate policies by the content of certificates

Re: freeradius snap EAP//TLS problem

2004-04-08 Thread Rinaldo Bergamini
Alan DeKok wrote: The debug messages do tell you what's going wrong: rlm_eap_tls: Received unexpected tunneled data after successful handshake. rlm_eap: Handler failed in EAP/tls rlm_eap: Failed in EAP select modcall[authenticate]: module eap returns invalid for request 4 See