pfSense + PPTP + FreeRADIUS + LDAP

2010-02-02 Thread Fabio Rampazzo Mathias
Helo there, I'm relative new to freeradius, and i'm trying to configure a PPTP VPN on pfSense, authenticating in a FreeRADIUS with LDAP module. But, I'm getting the following error : Found Auth-Type = LDAP WARNING: Please update your configuration, and remove 'Auth-Type = Local' WARNING: Use the

Re: pfSense + PPTP + FreeRADIUS + LDAP

2010-02-02 Thread Alan DeKok
Fabio Rampazzo Mathias wrote: I'm relative new to freeradius, and i'm trying to configure a PPTP VPN on pfSense, authenticating in a FreeRADIUS with LDAP module. But, I'm getting the following error : Found Auth-Type = LDAP WARNING: Please update your configuration, and remove 'Auth-Type =

Re: pfSense + PPTP + FreeRADIUS + LDAP

2010-02-02 Thread Fabio Rampazzo Mathias
Alan, Thanks for quick response. On Tue, Feb 2, 2010 at 12:29 PM, Alan DeKok al...@deployingradius.comwrote: Fabio Rampazzo Mathias wrote: I'm relative new to freeradius, and i'm trying to configure a PPTP VPN on pfSense, authenticating in a FreeRADIUS with LDAP module. But, I'm getting

Re: pfSense + PPTP + FreeRADIUS + LDAP

2010-02-02 Thread Alan DeKok
Fabio Rampazzo Mathias wrote: yes and couldn't find anything saying Auth-Type = Local...but I think this isn't the most important problem. I've used grep to search. A database? I've sent just a part of debug because I've thought this is the part which really matters. Is there any other

Re: pfSense + PPTP + FreeRADIUS + LDAP

2010-02-02 Thread Fabio Rampazzo Mathias
Alan, On Tue, Feb 2, 2010 at 5:27 PM, Alan DeKok al...@deployingradius.comwrote: Fabio Rampazzo Mathias wrote: yes and couldn't find anything saying Auth-Type = Local...but I think this isn't the most important problem. I've used grep to search. A database? There's no database AFAIK.

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Douglas Macedo
Hey guys, i force in WIndows Client to use only mschap2, but the problem continue: - Module: Instantiated radutmp (radutmp) Listening on authentication *:1812 Listening on accounting *:1813 Ready to process requests. rad_recv: Access-Request packet from host 150.162.67.254:32858, id=109,

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread tnt
i force in WIndows Client to use only mschap2, but the problem continue: - Module: Instantiated radutmp (radutmp) Listening on authentication *:1812 Listening on accounting *:1813 Ready to process requests. rad_recv: Access-Request packet from host 150.162.67.254:32858, id=109, length=53

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Douglas Macedo
Hey TNT, On Thu, Nov 27, 2008 at 2:54 PM, [EMAIL PROTECTED] wrote: i force in WIndows Client to use only mschap2, but the problem continue: - Module: Instantiated radutmp (radutmp) Listening on authentication *:1812 Listening on accounting *:1813 Ready to process requests. rad_recv:

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Alexandre Chapellon
Le 27.11.2008 07:17, Douglas Macedo a écrit : Hey TNT, On Thu, Nov 27, 2008 at 2:54 PM, [EMAIL PROTECTED] mailto:[EMAIL PROTECTED] wrote: i force in WIndows Client to use only mschap2, but the problem continue: - Module: Instantiated radutmp (radutmp)

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Douglas Macedo
Hey, i copy the dictionary to /etc/radiusclient. But now the connections don't target the Radius Server. -- epiderme:/etc/radiusclient# ls -l total 68 -rw-r--r-- 1 root root 6593 2008-11-27 15:02 dictionary -rw-r--r-- 1 root root 12388 2006-10-29 08:54 dictionary.ascend -rw-r--r-- 1 root root

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Alexandre Chapellon
Le 27.11.2008 10:15, Douglas Macedo a écrit : Hey, i copy the dictionary to /etc/radiusclient. But now the connections don't target the Radius Server. -- epiderme:/etc/radiusclient# ls -l total 68 -rw-r--r-- 1 root root 6593 2008-11-27 15:02 dictionary -rw-r--r-- 1 root root 12388

Re: PPTP + FreeRadius + LDAP

2008-11-27 Thread Douglas Macedo
Alexandre, that's work. The problem is that the dictionaries of radiusclient, isn't correct. The default microsoft dictionary don't work perfectly. I use this page to modify my dictionary.microsoft: http://wiki.freeradius.org/PopTop#The_radiusclient_setup_part_.28on_the_Poptop_server.29 Now

PPTP + FreeRadius + LDAP

2008-11-26 Thread Douglas Macedo
Hey guys, i'm trying configure a VPN Server with PPTP, using the 'radiusclient', to connect on a FreeRadius, with auth in a LDAP Server. I finished the configure, but when a try connect with a client Windows XP, don't work. The radiusd -X output: = [EMAIL PROTECTED] /usr/local/etc/raddb]#

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alan DeKok
Douglas Macedo wrote: i'm trying configure a VPN Server with PPTP, using the 'radiusclient', to connect on a FreeRadius, with auth in a LDAP Server. I finished the configure, but when a try connect with a client Windows XP, don't work. The radiusd -X output: The client is doing CHAP,

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Douglas Macedo
Alan, how I can fix that? Thanks in advanced, Douglas On Wed, Nov 26, 2008 at 4:54 PM, Alan DeKok [EMAIL PROTECTED]wrote: Douglas Macedo wrote: i'm trying configure a VPN Server with PPTP, using the 'radiusclient', to connect on a FreeRadius, with auth in a LDAP Server. I finished the

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alan DeKok
Douglas Macedo wrote: how I can fix that? Read the web page. It tells you. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Douglas Macedo
Sorry Alan, but the webpage tells that its don't work. Its impossible? Correct? So, how I can fix that the other way? My pptp-options: == epiderme:/etc/ppp# cat pptpd-options name pptpd refuse-pap ##refuse-chap require-chap ##refuse-mschap require-mschap require-mschap-v2 require-mppe-128

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alexandre Chapellon
trying forcing windows pptp client to use mschapv2 Le 26.11.2008 09:15, Douglas Macedo a écrit : Sorry Alan, but the webpage tells that its don't work. Its impossible? Correct? So, how I can fix that the other way? My pptp-options: == epiderme:/etc/ppp# cat pptpd-options name pptpd

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alan DeKok
Douglas Macedo wrote: but the webpage tells that its don't work. Its impossible? Correct? Since I wrote that web page... I won't disagee with it. So, how I can fix that the other way? Do you have questions about the suggestions on the web page? My pptp-options: == epiderme:/etc/ppp#

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Douglas Macedo
Alexandre, if I try mschapv2 in Windons client: -- rad_recv: Access-Request packet from host 150.162.67.254:32839, id=46, length=52 Service-Type = Framed-User Framed-Protocol = PPP User-Name = nobody NAS-IP-Address = 1.1.1.1 NAS-Port = 0 Processing the authorize section of

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alexandre Chapellon
Le 26.11.2008 09:32, Douglas Macedo a écrit : Alexandre, if I try mschapv2 in Windons client: -- rad_recv: Access-Request packet from host 150.162.67.254:32839 http://150.162.67.254:32839, id=46, length=52 Service-Type = Framed-User Framed-Protocol = PPP User-Name = nobody

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread Alan DeKok
Douglas Macedo wrote: Any idea? Use a recent version of the server. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: PPTP + FreeRadius + LDAP

2008-11-26 Thread tnt
if I try mschapv2 in Windons client: -- rad_recv: Access-Request packet from host 150.162.67.254:32839, id=46, length=52 Service-Type = Framed-User Framed-Protocol = PPP User-Name = nobody NAS-IP-Address = 1.1.1.1 NAS-Port = 0 This is not an mschap request.