Re: problem with ldap authentication (epilog)

2009-03-25 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: freeradius is used by chillispot on the machine, does your answer means chillispot is sending a CHAP request ? Yes. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html For information the problem is located

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: is it possible to use freeradius with NIS instead of LDAP ? thanks Yes. NIS is just a different way of getting users to seem to be in /etc/passwd. So there shouldn't be anything to do. Just install the server, and it should work. Alan DeKok.

Re: problem with ldap authentication

2009-03-24 Thread tnt
is it possible to use freeradius with NIS instead of LDAP ? thanks Yes. NIS is just a different way of getting users to seem to be in /etc/passwd. So there shouldn't be anything to do. Just install the server, and it should work. Alan DeKok. you mean uncomment the /etc/passwd in

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
Frank Bonnet wrote: Alan DeKok wrote: Frank Bonnet wrote: is it possible to use freeradius with NIS instead of LDAP ? thanks Yes. NIS is just a different way of getting users to seem to be in /etc/passwd. So there shouldn't be anything to do. Just install the server, and it should work.

Re: problem with ldap authentication

2009-03-24 Thread tnt
OK now I'm still in trouble ... even after removing LDAP statements here is the log of the session, how to setup the User-password to the right value to use /etc/passwd file ? thanks rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214 User-Name = bonj

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
t...@kalik.net wrote: OK now I'm still in trouble ... even after removing LDAP statements here is the log of the session, how to setup the User-password to the right value to use /etc/passwd file ? thanks rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214

Re: problem with ldap authentication

2009-03-24 Thread tnt
I KNOW we cannot use /etc/passwd for chap authentication my question is HOW to use /etc/passwd with freeradius ? Great. So, you are aware it's not going to work with chap. And what do you do: rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214 User-Name = bonj

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
t...@kalik.net wrote: I KNOW we cannot use /etc/passwd for chap authentication my question is HOW to use /etc/passwd with freeradius ? Great. So, you are aware it's not going to work with chap. And what do you do: rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214

Re: problem with ldap authentication

2009-03-24 Thread tnt
rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214 User-Name = bonj CHAP-Challenge = 0xbba7f4f69dfb6cf2342f1cbba4e7e482 CHAP-Password = 0x00f7fbe0aa077445403b77c55ab120f811 You send a chap request!!! Believe me ... if I knew how not to send I would do it My

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
t...@kalik.net wrote: rad_recv: Access-Request packet from host 127.0.0.1:32817, id=0, length=214 User-Name = bonj CHAP-Challenge = 0xbba7f4f69dfb6cf2342f1cbba4e7e482 CHAP-Password = 0x00f7fbe0aa077445403b77c55ab120f811 You send a chap request!!! Believe me ... if I

Re: problem with ldap authentication

2009-03-24 Thread Alan DeKok
Frank Bonnet wrote: Believe me ... if I knew how not to send I would do it Fix the NAS. You bought it, you know what make/model it is, so you can find documentation for it. Maybe try asking the vendor for documentation? My question is how to instruct freeradius et use /etc/passwd in the

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: Believe me ... if I knew how not to send I would do it Fix the NAS. You bought it, you know what make/model it is, so you can find documentation for it. Maybe try asking the vendor for documentation? My question is how to instruct freeradius et use

Re: problem with ldap authentication

2009-03-24 Thread Alan DeKok
Frank Bonnet wrote: freeradius is used by chillispot on the machine, does your answer means chillispot is sending a CHAP request ? Yes. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: problem with ldap authentication

2009-03-24 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: freeradius is used by chillispot on the machine, does your answer means chillispot is sending a CHAP request ? Yes. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html OK thanks for your (constructive ;-))

problem with ldap authentication

2009-03-23 Thread Frank Bonnet
hello I'm in trouble with a debian version of freeradius I've installed chillispot and freeradius packages but it won't work for LDAP users it fails with such error messages : Mon Mar 23 16:41:05 2009 : Auth: Login incorrect: [/CHAP-Password] (from client localhost port 31 cli

Re: problem with ldap authentication

2009-03-23 Thread Nicolas Goutte
Am 23.03.2009 um 16:46 schrieb Frank Bonnet: hello I'm in trouble with a debian version of freeradius I've installed chillispot and freeradius packages but it won't work for LDAP users it fails with such error messages : Mon Mar 23 16:41:05 2009 : Auth: Login incorrect: [/CHAP-

Re: problem with ldap authentication

2009-03-23 Thread Alan DeKok
Frank Bonnet wrote: I'm in trouble with a debian version of freeradius I've installed chillispot and freeradius packages but it won't work for LDAP users it fails with such error messages : Mon Mar 23 16:41:05 2009 : Auth: Login incorrect: [/CHAP-Password] (from client localhost

Re: problem with ldap authentication

2009-03-23 Thread David N'DAKPAZE
I want to know what to configure in order to use ldap as freeradius database of users 2009/3/23, Alan DeKok al...@deployingradius.com: Frank Bonnet wrote: I'm in trouble with a debian version of freeradius I've installed chillispot and freeradius packages but it won't work for LDAP users

Re: problem with ldap authentication

2009-03-23 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: I'm in trouble with a debian version of freeradius I've installed chillispot and freeradius packages but it won't work for LDAP users it fails with such error messages : Mon Mar 23 16:41:05 2009 : Auth: Login incorrect: [/CHAP-Password] (from

Re: problem with ldap authentication

2009-03-23 Thread Alan DeKok
Frank Bonnet wrote: OK here is the debug of one failed session ... rlm_ldap: performing search in dc=esiee,dc=fr, with filter (uid=xxx) rlm_ldap: object not found or got ambiguous search result Well, that's relatively clear. There's no such user, OR it got multiple responses. You

Re: problem with ldap authentication

2009-03-23 Thread Alan DeKok
David N'DAKPAZE wrote: I want to know what to configure in order to use ldap as freeradius database of users Read raddb/modules/ldap The O'Reilly OpenLDAP book also has a good description of how to configure FreeRADIUS to use LDAP. Alan DeKok. - List info/subscribe/unsubscribe? See

Re: problem with ldap authentication

2009-03-23 Thread David N'DAKPAZE
Thank you iwill try it 2009/3/23, Alan DeKok al...@deployingradius.com: Frank Bonnet wrote: OK here is the debug of one failed session ... rlm_ldap: performing search in dc=esiee,dc=fr, with filter (uid=xxx) rlm_ldap: object not found or got ambiguous search result Well, that's

Re: problem with ldap authentication

2009-03-23 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: OK here is the debug of one failed session ... rlm_ldap: performing search in dc=esiee,dc=fr, with filter (uid=xxx) rlm_ldap: object not found or got ambiguous search result Well, that's relatively clear. There's no such user, OR it got

Re: problem with ldap authentication

2009-03-23 Thread Alan DeKok
Frank Bonnet wrote: is it possible to use freeradius with NIS instead of LDAP ? thanks Yes. NIS is just a different way of getting users to seem to be in /etc/passwd. So there shouldn't be anything to do. Just install the server, and it should work. Alan DeKok. - List

Re: problem with ldap authentication

2009-03-23 Thread Frank Bonnet
Alan DeKok wrote: Frank Bonnet wrote: is it possible to use freeradius with NIS instead of LDAP ? thanks Yes. NIS is just a different way of getting users to seem to be in /etc/passwd. So there shouldn't be anything to do. Just install the server, and it should work. Alan DeKok.