Hi Alan,<div><span> thanks for the mail. </span></div><div>This is what we read about request authentication</div><div><div id="imcontent"><span style="font-family: 'MS Shell Dlg'; direction: ltr; word-wrap: break-word; font-size: 8pt; "><span style="border-bottom-color: rgb(0, 0, 0); line-height: 18px; border-right-width: 0px; background-color: rgb(255, 255, 255); border-top-color: rgb(0, 0, 0); margin-top: 0px; margin-right: 0px; margin-bottom: 0.5em; margin-left: 0px; font-family: sans-serif; border-top-width: 0px; border-bottom-width: 0px; border-right-color: rgb(0, 0, 0); font-size: 1.2em; border-left-color: rgb(0, 0, 0); border-left-width: 0px; "><b>Access-Request arrives</b></span> <p style="border-bottom-color: rgb(0, 0, 0); line-height: 18px; border-right-width: 0px; background-color: rgb(255, 255, 255); border-top-color: rgb(0, 0, 0); margin-top: 0.4em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-family: sans-serif; border-top-width: 0px; border-bottom-width: 0px; border-right-color: rgb(0, 0, 0); font-size: 12px; border-left-color: rgb(0, 0, 0); border-left-width: 0px; ">When the packet arrives at the FreeRADIUS server it is indicated by the following part:</p><pre style="border-bottom-color: rgb(209, 215, 220); border-bottom-width: 1px; border-bottom-style: solid; border-left-color: rgb(209, 215, 220); border-left-width: 1px; border-left-style: solid; line-height: 18px; background-color: rgb(255, 255, 255); margin-top: 0px; margin-bottom: 0px; margin-left: 40px; font-family: Courier, 'Courier New', sans-serif; color: rgb(0, 102, 0); font-size: 12px; border-top-color: rgb(209, 215, 220); border-top-width: 1px; border-top-style: solid; border-right-color: rgb(209, 215, 220); border-right-width: 1px; border-right-style: solid; "><p style="line-height:13.5pt;border-right-width:0px;margin:0.4em 0px 0.8em;border-top-width:0px;border-bottom-width:0px;border-left-width:0px">rad_recv: Access-Request packet from host 127.0.0.1 port 48698, <br>id=73, length=57<br> User-Name = "alice"<br> User-Password = "passme"<br> NAS-IP-Address = 127.0.1.1<br> NAS-Port = 100</p></pre><p style="border-bottom-color: rgb(0, 0, 0); line-height: 18px; border-right-width: 0px; background-color: rgb(255, 255, 255); border-top-color: rgb(0, 0, 0); margin-top: 0.4em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-family: sans-serif; border-top-width: 0px; border-bottom-width: 0px; border-right-color: rgb(0, 0, 0); font-size: 12px; border-left-color: rgb(0, 0, 0); border-left-width: 0px; ">We see that the incoming request contains four AVPs.</p><p style="border-bottom-color: rgb(0, 0, 0); line-height: 18px; border-right-width: 0px; background-color: rgb(255, 255, 255); border-top-color: rgb(0, 0, 0); margin-top: 0.4em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-family: sans-serif; border-top-width: 0px; border-bottom-width: 0px; border-right-color: rgb(0, 0, 0); font-size: 12px; border-left-color: rgb(0, 0, 0); border-left-width: 0px; ">Although the AVP <i style="border-right-width:0px;margin:0px;border-top-width:0px;border-bottom-width:0px;border-left-width:0px">User-Password</i> is shown here in clear text, it was not transmitted to the server in clear text. <font color="#ff0000">FreeRADIUS uses the shared secret to encrypt and decrypt the value of the <i style="border-right-width:0px;margin:0px;border-top-width:0px;border-bottom-width:0px;border-left-width:0px">User-Password</i> AVP</font>.</p><p style="border-bottom-color: rgb(0, 0, 0); line-height: 18px; border-right-width: 0px; background-color: rgb(255, 255, 255); border-top-color: rgb(0, 0, 0); margin-top: 0.4em; margin-right: 0px; margin-bottom: 0.8em; margin-left: 0px; font-family: sans-serif; border-top-width: 0px; border-bottom-width: 0px; border-right-color: rgb(0, 0, 0); font-size: 12px; border-left-color: rgb(0, 0, 0); border-left-width: 0px; "> This is what I am looking for. What is the place where RADIUS does decrypt operation.</p></span></div><br>Thanks and Regards,<br>
Vishal Kotalwar,<br>Bangalore-35.<br>
09900055647.<br><br><br>From: alan buxey <A.L.M.Buxey@lboro.ac.uk><br>Sent: Fri, 20 Apr 2012 16:50:14 <br>To: "vishal_nitr@rediffmail.com" <vishal_nitr@rediffmail.com>, FreeRadius users mailing list <freeradius-users@lists.freeradius.org><br>Subject: Re: Help: PAP with Sha1<br>Hi,<br>
<br>
> I tried changing few things in lib/radius.c to SHA1 but with no<br>
> success.<br>
<br>
please post full putput form radiusd -X<br>
<br>
regarding using SHA1 - easy, just ensure that your passwords are stored as SHA1<br>
objects - the docs say how to do this<br>
<br>
<br>
alan<br>
</div><br><A HREF="http://sigads.rediff.com/RealMedia/ads/click_nx.ads/www.rediffmail.com/signatureline.htm@Middle?" target="_blank"><IMG SRC="http://sigads.rediff.com/RealMedia/ads/adstream_nx.ads/www.rediffmail.com/signatureline.htm@Middle"></A><br><table width="578" border="0" cellspacing="0" cellpadding="0"><tr><td><span style="font-family:Arial, Helvetica, sans-serif; font-size:12px; color:#393939;">Follow <span style="color:#0000CC;"><b><u><a href="http://track.rediff.com/click?url=___http://dealhojaye.rediff.com?sc_cid=rediffmailsignature___&cmp=signature&lnk=rediffmailsignature&newservice=deals" target="_blank">Rediff Deal ho jaye!</a></u></b></span> to get exciting offers in your city everyday.</span></td></tr></table>