Re: LDAP & MSCHAP errors

2008-11-12 Thread Simon Palmer
Great - thanks, Absolutely outstanding help thanks! :) I hashed from ldap.attrmap as below #checkItem LM-Password sambaLmPassword #checkItem NT-Password sambaNtPassword And it all worked! :) Thanks very much! Simon >>> <[EMAIL PROTECTED]> 12/11/20

Re: LDAP & MSCHAP errors

2008-11-12 Thread tnt
>[ldap] Added the eDirectory password password in check items as >Cleartext-Password OK. Here is the clear text password. >[ldap] No default NMAS login sequence >[ldap] looking for check items in directory... >rlm_ldap: acctFlags -> SMB-Account-CTRL-TEXT == "[UX ]" >rlm_ldap: sambaNtPassw

Re: LDAP & MSCHAP errors

2008-11-12 Thread Simon Palmer
FreeRADIUS Version 2.1.1, for host x86_64-unknown-linux-gnu, built on Nov 10 2008 at 13:18:51 Copyright (C) 1999-2008 The FreeRADIUS server project and contributors. There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. You may redistribute copies of FreeRADIUS und

Re: LDAP & MSCHAP errors

2008-11-12 Thread tnt
>>>pap against LDAP works fine >>>chap against LDAP works fine (With ntradping) >> >>They used different password. > >Do you mean chap and MSCHAPv2 require passwords in different formats or >something? No. There is a clear text password stored somewhere. >I can auth CHAP, but with the same userna

Re: LDAP & MSCHAP errors

2008-11-12 Thread Simon Palmer
>>pap against LDAP works fine >>chap against LDAP works fine (With ntradping) > >They used different password. Do you mean chap and MSCHAPv2 require passwords in different formats or something? I can auth CHAP, but with the same username and password can't auth CHAPv2 (with no config change on fre

Re: LDAP & MSCHAP errors

2008-11-11 Thread tnt
>We are trying to set up freeRADIUS 2.1.1 against eDirectory LDAP and >getting problems. >(Trying SLES 10 SP2 32bit and 64 bit) >pap against LDAP works fine >chap against LDAP works fine (With ntradping) They used different password. >BUT - MSCHAPv2 gives "FAILED: MS-CHAP2-Response is incorrect"

LDAP & MSCHAP errors

2008-11-11 Thread Simon Palmer
Hi, We are trying to set up freeRADIUS 2.1.1 against eDirectory LDAP and getting problems. (Trying SLES 10 SP2 32bit and 64 bit) pap against LDAP works fine chap against LDAP works fine (With ntradping) BUT - MSCHAPv2 gives "FAILED: MS-CHAP2-Response is incorrect" Am I missing something required f