RE: 802.1x machine authentication patch help

2007-12-14 Thread Michael Patzer
, December 14, 2007 1:04 PM To: freeradius-users@lists.freeradius.org Subject: Re: 802.1x machine authentication patch help i found the topic about No logon workstation trust account (0xc199). i've the same problem using freeradius-2.0.0-pre2 samba 3.0.24 on debian etch

Re: 802.1x machine authentication patch help

2007-12-14 Thread Michael Patzer
PROTECTED] [EMAIL PROTECTED] On Behalf Of Phil Mayers Sent: 01 October 2007 09:55 To: FreeRadius users mailing list Subject: Re: 802.1x machine authentication patch help On Fri, 2007-09-28 at 12:06 +0100, Marco Casulli wrote: Hi Jamie, Marco from BBC in london. I have read your message (http

Re: 802.1x machine authentication patch help

2007-12-14 Thread Alan DeKok
Michael Patzer wrote: i found the topic about No logon workstation trust account (0xc199). i've the same problem using freeradius-2.0.0-pre2 samba 3.0.24 on debian etch is it required to update to samba 3.0.28 (debian unstable) to fix this issue, or could it be

Re: 802.1x machine authentication patch help

2007-10-01 Thread Phil Mayers
On Fri, 2007-09-28 at 12:06 +0100, Marco Casulli wrote: Hi Jamie, Marco from BBC in london. I have read your message (http://lists.cistron.nl/pipermail/freeradius-users/2005-November/048576.html related to the error when the radius is trying to authenticate in AD and I am getting

RE: 802.1x machine authentication patch help

2007-10-01 Thread Marco Casulli
To: FreeRadius users mailing list Subject: Re: 802.1x machine authentication patch help On Fri, 2007-09-28 at 12:06 +0100, Marco Casulli wrote: Hi Jamie, Marco from BBC in london. I have read your message (http://lists.cistron.nl/pipermail/freeradius-users/2005-November/0485 76.html related

Re: 802.1x machine authentication patch help

2007-10-01 Thread Alan DeKok
Marco Casulli wrote: However how is samba related to this error? This is an error coming from the AD server no able to authenticate a user. If you're not going to believe the answers on this list, I don't see why you're asking questions here. Q: Are you using Samba? Yes: upgrade as

RE: 802.1x machine authentication patch help

2007-10-01 Thread Marco Casulli
] On Behalf Of Alan DeKok Sent: 01 October 2007 10:20 To: FreeRadius users mailing list Subject: Re: 802.1x machine authentication patch help Marco Casulli wrote: However how is samba related to this error? This is an error coming from the AD server no able to authenticate a user. If you're

RE: 802.1x machine authentication patch help

2007-10-01 Thread Phil Mayers
On Mon, 2007-10-01 at 10:41 +0100, Marco Casulli wrote: Touchy! :-) Read this list for a while, then you'll see why people get irate when their advice isn't followed ;o) I was only asking as I am not an expert on this subject and wanted to understand why Samba came in the loop? In a domain

Re: 802.1x machine authentication patch help

2005-11-21 Thread Jamie Crawford
I found my problem. From Andrew Bartlett himself This is not supported against NT4. Only Samba 3.0.21rc1 and AD support this extra flag. To do machine authentication with freeradius, your workstation (supplicant) and samba server must be a member of a 2000/2003 domain. I had the supplicant and

Re: 802.1x machine authentication patch help

2005-11-18 Thread Michael Griego
Make sure you used the rlm_MSchap module from the snapshot, not the rlm_chap module. They're different. --Mike Jamie Crawford wrote: Hi, I am trying to get machine authentication working with freeradius. I have patched the samba code and freeradius code. But am getting this error when the

Re: 802.1x machine authentication patch help

2005-11-18 Thread Jamie Crawford
Sorry for the typo, I meant to type rlm_mschap. Are there only certain files out of the /src/modules/rlm_mschap cvs snapshot that I need to copy over? Thanks, jamie [EMAIL PROTECTED] 11/18/2005 12:16:43 PM Make sure you used the rlm_MSchap module from the snapshot, not the rlm_chap module.

Re: 802.1x machine authentication patch help

2005-11-18 Thread Jamie Crawford
Hi, I finally got freeradius to strip the host/ and append the $ to the host name, but it still wont validate the workstation. I get No logon workstation trust account (0xc199) At least now it's narrowed down to the ntlm_auth command. I tried to run the command manually with different