Freeradius + LDAP auth

Paulo Maia phc.maia at gmail.com
Wed Nov 24 14:46:48 CET 2010


Do u have NT e LM passowrd attributes in ur LDAP database ? coz if u do u
could try to use EAP/PEAP .
Its easier for windows clients .
Regards ,


On Wed, Nov 24, 2010 at 9:26 AM, Old Eduardo <oldeduardo at gmail.com> wrote:

> I read in many sites, for get ldap auth need mschap, its true?
>
> i try mschap.
>
> 2010/11/24 Paulo Maia <phc.maia at gmail.com>
>
>> yes . but i have to include in your authorize and authenticate sessions .
>> What kind of auth ure trying to get ?
>> Regards ,
>>
>>
>>
>> On Wed, Nov 24, 2010 at 8:43 AM, Old Eduardo <oldeduardo at gmail.com>wrote:
>>
>>> where i define this? eap.conf?
>>>
>>> sorry, newbie with freeradius.
>>>
>>> 2010/11/24 Paulo Maia <phc.maia at gmail.com>
>>>
>>> What auth method u're trying to use ?
>>>> EAP/PEAP ?
>>>>
>>>> Regards ,
>>>>
>>>>
>>>>
>>>> On Wed, Nov 24, 2010 at 7:52 AM, Old Eduardo <oldeduardo at gmail.com>wrote:
>>>>
>>>>> HI Paulo,
>>>>>
>>>>> Thanks for u reply, see below my authenticate and authorize session.
>>>>>
>>>>> authorize {
>>>>>         preprocess
>>>>>         mschap
>>>>>         ldap
>>>>> }
>>>>>
>>>>> authenticate {
>>>>>         Auth-Type LDAP {
>>>>>                 ldap
>>>>>         }
>>>>>        Auth-Type MS-CHAP {
>>>>>                mschap
>>>>>        }
>>>>> }
>>>>>
>>>>>
>>>>>
>>>>> 2010/11/23 Paulo Maia <phc.maia at gmail.com>
>>>>>
>>>>> Show us your authorize and authenticate session . I had a problem like
>>>>>> that once
>>>>>>
>>>>>> Regards ,
>>>>>>
>>>>>>
>>>>>> On Tue, Nov 23, 2010 at 9:49 AM, Old Eduardo <oldeduardo at gmail.com>wrote:
>>>>>>
>>>>>>> sorry alan, i understand need to read debug.
>>>>>>>
>>>>>>> But, i see secret in clients and my test radtest user pass ip 0
>>>>>>> secret is corretly.
>>>>>>>
>>>>>>> And my other doubt is in auth type = Local, why local if i put auth
>>>>>>> type LDAP in configuration? Only get local ...
>>>>>>>
>>>>>>> Realy sorry for this, but need u help.
>>>>>>>
>>>>>>> Regards,
>>>>>>>
>>>>>>>
>>>>>>> 2010/11/23 Alan DeKok <aland at deployingradius.com>
>>>>>>>
>>>>>>>> Old Eduardo wrote:
>>>>>>>> > but i try to configure this in few weeks and no get sucess.
>>>>>>>>
>>>>>>>>  Ask questions earlier.
>>>>>>>>
>>>>>>>>  Or, read the debug output.
>>>>>>>>
>>>>>>>> > Tue Nov 23 07:37:24 2010 : Debug:   WARNING: Unprintable
>>>>>>>> characters in
>>>>>>>> > the password.    Double-check the shared secret on the server and
>>>>>>>> the NAS!
>>>>>>>>
>>>>>>>>  That message seems pretty clear.
>>>>>>>>
>>>>>>>>  Alan DeKok.
>>>>>>>> -
>>>>>>>> List info/subscribe/unsubscribe? See
>>>>>>>> http://www.freeradius.org/list/users.html
>>>>>>>>
>>>>>>>
>>>>>>>
>>>>>>>
>>>>>>> --
>>>>>>> Old Eduardo ...
>>>>>>>
>>>>>>> make a difference ...
>>>>>>>
>>>>>>> -
>>>>>>> List info/subscribe/unsubscribe? See
>>>>>>> http://www.freeradius.org/list/users.html
>>>>>>>
>>>>>>
>>>>>>
>>>>>> -
>>>>>> List info/subscribe/unsubscribe? See
>>>>>> http://www.freeradius.org/list/users.html
>>>>>>
>>>>>
>>>>>
>>>>>
>>>>> --
>>>>> Old Eduardo ...
>>>>>
>>>>> make a difference ...
>>>>>
>>>>> -
>>>>> List info/subscribe/unsubscribe? See
>>>>> http://www.freeradius.org/list/users.html
>>>>>
>>>>
>>>>
>>>> -
>>>> List info/subscribe/unsubscribe? See
>>>> http://www.freeradius.org/list/users.html
>>>>
>>>
>>>
>>>
>>> --
>>> Old Eduardo ...
>>>
>>> make a difference ...
>>>
>>> -
>>> List info/subscribe/unsubscribe? See
>>> http://www.freeradius.org/list/users.html
>>>
>>
>>
>> -
>> List info/subscribe/unsubscribe? See
>> http://www.freeradius.org/list/users.html
>>
>
>
>
> --
> Old Eduardo ...
>
> make a difference ...
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20101124/e4f54016/attachment.html>


More information about the Freeradius-Users mailing list