<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta content="text/html;charset=ISO-8859-1" http-equiv="Content-Type">
</head>
<body bgcolor="#ffffff" text="#000000">
Ivan,<br>
<br>
I did what you recommended (I guess). See below:<br>
<br>
mysql> select * from radgroupreply;<br>
+----+-----------+--------------------+----+-----------------------+------+<br>
| id | groupname | attribute | op | value |
Prio |<br>
+----+-----------+--------------------+----+-----------------------+------+<br>
| 1 | pop-sp | Framed-Compression | := | Van-Jacobson-TCP-IP
| | <br>
| 3 | pop-sp | Service-Type | := | NAS-Prompt
| | <br>
| 5 | reject | reply-message | := | Autenticação recusada |
NULL | <br>
+----+-----------+--------------------+----+-----------------------+------+<br>
3 rows in set (0.00 sec)<br>
<br>
But I can't authenticate yet.<br>
<pre class="moz-signature" cols="72">--
Wagner Pereira
PoP-SP/RNP - Ponto de Presença da RNP em São Paulo
CCE/USP - Centro de Computação Eletrônica da Universidade de São Paulo
<a class="moz-txt-link-freetext" href="http://www.pop-sp.rnp.br">http://www.pop-sp.rnp.br</a>
(11) 3091-8902</pre>
<br>
<br>
<a class="moz-txt-link-abbreviated" href="mailto:tnt@kalik.net">tnt@kalik.net</a> escreveu:
<blockquote
cite="mid:49360.87.194.16.13.1257964739.squirrel@www.kalik.net"
type="cite">
<blockquote type="cite">
<pre wrap="">Please, could someone read this output from freeradius' debugging mode to
help me? Thanks in advance.
My scenario is:
- Server: Debian GNU/Linux lenny x86_64 kernel 2.6.26-2-amd64
- Freeradius 2.0.4
- MySQL 5.0.51a
- Calling Station: Windows XP Professional 32 bits SP3
- Software client: SSH Secure Shell 3.2.9
- NAS client: Cisco6500 Catalyst - IOS versão 12.2(17r)S4
Sending Access-Accept of id 121 to NAS-IP-Address port 21645
Framed-Compression := Van-Jacobson-TCP-IP
Framed-Protocol := PPP
Service-Type := Login-User
Framed-MTU := 1500
</pre>
</blockquote>
<pre wrap=""><!---->
Freeradius is set up well. Reply attributes you configured are wrong for
ssh. You don't need any of those Framed attributes. And Service-Type
should be NAS-Prompt-User most likely. Read Cisco dokument on the wiki:
<a class="moz-txt-link-freetext" href="http://wiki.freeradius.org/Cisco#Shell_Access">http://wiki.freeradius.org/Cisco#Shell_Access</a>
Ivan Kalik
Kalik Informatika ISP
-
List info/subscribe/unsubscribe? See <a class="moz-txt-link-freetext" href="http://www.freeradius.org/list/users.html">http://www.freeradius.org/list/users.html</a>
</pre>
</blockquote>
</body>
</html>