SV: RADIUS challenge response using the PAM module

2009-03-19 Thread Robert Svensson
radius-users-bounces+robert.svensson=mideye@lists.freeradius.org [mailto:freeradius-users-bounces+robert.svensson=mideye@lists.freeradius.org] För t...@kalik.net Skickat: den 18 mars 2009 23:49 Till: FreeRadius users mailing list Ämne: RE: RADIUS challenge response using the PAM module >

Re: RADIUS challenge response using the PAM module

2009-03-18 Thread Alan DeKok
Robert Svensson wrote: > The problem is that the access challenge sent by the radius server, to the > pam module, is returned by the pam module without being displayed to the user. That sentence doesn't make any sense. > What I expect is for the access challenge to be displayed to the user: En

RE: RADIUS challenge response using the PAM module

2009-03-18 Thread tnt
>The problem is that the access challenge sent by the radius server, to the pam >module, is returned by the pam module without being displayed to the user. >What I expect is for the access challenge to be displayed to the user: Enter >your OTP (or something). After the user has responded to the a

RE: RADIUS challenge response using the PAM module

2009-03-18 Thread Robert Svensson
.com] Sent: Wednesday, March 18, 2009 9:47 PM To: FreeRadius users mailing list Subject: Re: RADIUS challenge response using the PAM module Robert Svensson wrote: > something else than what the radius server expected. Like an invalid OTP for > example Uh... the RADIUS server is the on

Re: RADIUS challenge response using the PAM module

2009-03-18 Thread Alan DeKok
Robert Svensson wrote: > something else than what the radius server expected. Like an invalid OTP for > example Uh... the RADIUS server is the one generating the challenge. Not the PAM module. Perhaps you could give explanations of what you expect, and what you see. Alan DeKok. - List in

RE: RADIUS challenge response using the PAM module

2009-03-18 Thread Robert Svensson
Alan DeKok [al...@deployingradius.com] Sent: Wednesday, March 18, 2009 6:22 PM To: FreeRadius users mailing list Subject: Re: RADIUS challenge response using the PAM module Robert Svensson wrote: > The PAM module recieves the access challenge from the radius server. The > problem is that inst

Re: RADIUS challenge response using the PAM module

2009-03-18 Thread Alan DeKok
Robert Svensson wrote: > The PAM module recieves the access challenge from the radius server. The > problem is that instead of asking the user for additional input, the > module returns an invald challenge back to the radius server and > therefore the authentication fails. What's an "invalid ch

RADIUS challenge response using the PAM module

2009-03-18 Thread Robert Svensson
Hi, I've been pulling my hair trying to get the PAM radius module to successfully authenticate against a radius server that thows a password challenge response AFTER a user has been verified using their user name and password (it's not a FreeRadius server). By looking at the source code, It see