Re: Logging ntlm authentication

2010-09-07 Thread Sion
On Tue, Sep 7, 2010 at 8:45 AM, Alan DeKok wrote: > Sion wrote: >> On Mon, Sep 6, 2010 at 12:54 PM, Alan DeKok >> wrote: >>> Sion wrote: >>>> I've also tried outer.reply, but I'm still not seeing it show up in my >>>> logs. >>&g

Re: Logging ntlm authentication

2010-09-06 Thread Sion
On Mon, Sep 6, 2010 at 12:54 PM, Alan DeKok wrote: > Sion wrote: >> I've also tried outer.reply, but I'm still not seeing it show up in my logs. > >    And the debug log says... ? rad_recv: Access-Request packet from host 192.168.196.13 port 32768, id=113, length=175

Re: Logging ntlm authentication

2010-09-06 Thread Sion
On Fri, Sep 3, 2010 at 10:30 PM, Alan DeKok wrote: > Sion wrote: >> This had actually crossed my mind but I had tried testing this in the >> post-auth section as well. >> >> What section should I do this in? Would something like this work? >> >> update

Re: Logging ntlm authentication

2010-09-03 Thread Sion
On Fri, Sep 3, 2010 at 4:25 PM, Alan DeKok wrote: > Sion wrote: >> That was one of the first things I did after reading the debug output >> originally - I've got 'linelog' in the post-auth section of the >> "inner-tunnel" in addition to the "def

Re: Logging ntlm authentication

2010-09-03 Thread Sion
On Fri, Sep 3, 2010 at 3:32 PM, Alan DeKok wrote: > Sion wrote: >> Still no luck I'm afraid. Here's the output of radiusd -X in case it helps: > >  Reading it helps. > >  The MS-CHAP-Error is in the "inner-tunnel" virtual server.  You are > trying to l

Re: Logging ntlm authentication

2010-09-03 Thread Sion
On Fri, Sep 3, 2010 at 12:58 PM, Alan DeKok wrote: > Sion wrote: >> That's what I thought, but it my linelog log it shows it being empty. > >  The MS-CHAP-Error is in the reply. > >> I've tried putting 'linelog' in the post-auth sections of both the >

Re: Logging ntlm authentication

2010-09-03 Thread Sion
On Fri, Sep 3, 2010 at 11:47 AM, Alan DeKok wrote: > > Sion wrote: > > I've got freeradius 2.1.7 setup on a CentOS system working as an AAA > > server for our WPA Enterprise based wireless network with clients > > successfully authenticating using PEAP and TTLS.

Logging ntlm authentication

2010-09-03 Thread Sion
either the Exec-Program output of ntlm_auth or the peap reply value for the MS-CHAP-Error attribute but so far I've been unsuccessful in doing this. Is this possible? if so can anybody give me any pointers? Regards, Sion - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html