Authenticate users via AD and checking group membership:SOLVED

tnt at kalik.net tnt at kalik.net
Sun Jan 18 23:37:52 CET 2009


>} # server inner-tunnel
>[peap] Got tunneled reply code 2
>        Tunnel-Medium-Type:0 = IEEE-802
>        Tunnel-Private-Group-Id:0 = "staff"
>        Tunnel-Type:0 = VLAN
>        EAP-Message = 0x030b0004
>        Message-Authenticator = 0x00000000000000000000000000000000
>        User-Name = "radman02"
..
>Sending Access-Accept of id 150 to 10.10.3.29 port 1645
>        MS-MPPE-Recv-Key =
>0x5624be3ba66dd23cd25917c57661775be5c44b565056f613bed23f4c00734d99
>        MS-MPPE-Send-Key =
>0x6aed0e4c2a8dceafd68d6647931ec43eaa0b5ba7b9048c50b70702b86f9e6e59
>        EAP-Message = 0x030c0004
>        Message-Authenticator = 0x00000000000000000000000000000000
>        User-Name = "radman02"

Change use_tunneled_reply from peap section in eap.conf to yes. That will
copy tunnel attributes to the outer reply.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list