Regarding pam_radius_auth to be integrated with busybox

Deep Shah deep.shah at
Tue Oct 30 06:42:30 CET 2012


Thank you for your reply.

Here, radius server is at /usr/local/etc/raddb/ (which is on pc side) and I
have configured and put my client which is at /etc/raddb/server.

When I am getting " pam_radius_auth: packet from RADIUS server fails verification: The shared secret is probably
incorrect."  on my radius client.

I am getting below error message on my client.
!!!    Replacing User-Password in config items with Cleartext-Password.
!!! Please update your configuration so that the "known good"
!!! clear text password is in Cleartext-Password, and not in User-Password.
# Executing group from file /usr/local/etc/raddb//sites-enabled/default
+- entering group PAP {...}
[pap] login attempt with password "?U��?R�S4?H�0+R�"
[pap] Using clear text password "test"
[pap] Passwords don't match
++[pap] returns reject
Failed to authenticate the user.
  WARNING: Unprintable characters in the password.  Double-check the shared
secret on the server and the NAS!
Using Post-Auth-Type Reject


On Tue, Oct 30, 2012 at 10:58 AM, Fajar A. Nugraha <list at> wrote:

> On Tue, Oct 30, 2012 at 12:14 PM, Deep Shah <deep.shah at>
> wrote:
> > Please find below my pam_radius_auth.conf file snap shot.
> > #  pam_radius_auth configuration file.  Copy to: /etc/raddb/server
> Is it in the correct place?
> Since your earlier logs says "/usr/local/etc/raddb", you might also
> try copying the file there, just in case.
> > Please find below my client.conf file snap shot which is taken from
> server
> > side. My client IP is and my server IP is
> That's not what you said in your earlier post
> > Can you please let me know which configuration is wrong if there is any?
> Not sure.
> For this I'd actually suggest you start with known good working
> config. Either RHEL/Centos or Ubuntu/Debian is usually a good place to
> start. IIRC last time I tested this with RHEL it works just fine.
> Assuming you configure it correctly (hint: read the READMEs and docs
> that comes with the source/package).
> After you at least got THAT to work, then start working on your
> busybox-thingy. Just in case it's busybox-specific bug, in which case
> you should probably ask the devs there.
> --
> Fajar
> -
> List info/subscribe/unsubscribe? See
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the Freeradius-Users mailing list