pap "Cleartext-Password", sql etc...

Kevin Bonner keb at pa.net
Wed Jan 30 23:21:31 CET 2008


On Wednesday 30 January 2008 15:31:51 Andrew Long wrote:
> If I change the attribute to `Cleartext-Password', authentication
> fails and I see:
>
> rlm_pap: WARNING! No "known good" password found for the user.
> Authentication may fail because of this.
> ++[pap] returns noop
>   rad_check_password:  Found Auth-Type CHAP
> auth: type "CHAP"
> +- entering group CHAP
>   rlm_chap: login attempt by "elmaroma_cn3000" with CHAP password
>   rlm_chap: Cleartext-Password is required for authentication
> ++[chap] returns invalid
> auth: Failed to validate the user.
> Login incorrect (rlm_chap: Clear text password not available):
> [elmaroma_cn3000/<CHAP-Password>] (from client cn3000_aroma port 0 cli
> 00-02-6F-xx-xx-92)
>
> Thanks muchly,
> Andrew Long
> EWS

Can you run the radcheck query manually and post the output?  Is the operator 
correct?  Does it do the same thing when you move the SQL entry to the users 
file and make the same attribute name changes?

Kevin Bonner
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20080130/d1d290cd/attachment.pgp>


More information about the Freeradius-Users mailing list