pfSense + PPTP + FreeRADIUS + LDAP

Fabio Rampazzo Mathias fmathias at gmail.com
Tue Feb 2 13:47:09 CET 2010


Helo there,

I'm relative new to freeradius, and i'm trying to configure a PPTP VPN on
pfSense, authenticating in a FreeRADIUS with LDAP module. But, I'm getting
the following error :

Found Auth-Type = LDAP
WARNING: Please update your configuration, and remove 'Auth-Type = Local'
WARNING: Use the PAP or CHAP modules instead.
No User-Password or CHAP-Password attribute in the request.
Cannot perform authentication.
Failed to authenticate the user.

The authorize process works fine, but the authentication not. I can't find
"Auth-Type = Local" as it says. This is my access request :

rad_recv: Access-Request packet from host 192.168.7.1 port 2067, id=132,
length=182
NAS-Identifier = "yoda"
NAS-Port = 0
NAS-Port-Type = Virtual
Service-Type = Framed-User
Framed-Protocol = PPP
Calling-Station-Id = "189.102.177.232"
User-Name = "fmathias"
MS-CHAP-Challenge = 0xbb1e68338ed8f5047a5224fc502acaf9
MS-CHAP2-Response =
0x0100e017671426d787073d90dcb6a30ab3550000000000000000a5d5fa96e3770592a1df0039fcc812ea53a3684636f16cb3

I've tried many of google searches troubleshooting MS-CHAP problems and most
of them is saying me to get a Cleartext-Password entry on my database. But I
can't consider this an option, because the security of my accounts in LDAP
would be extremely compromised.

Can you help me?

Thanks in advance,
Fábio Rampazzo Mathias
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20100202/71dbc071/attachment.html>


More information about the Freeradius-Users mailing list