Regarding pam_radius_auth to be integrated with busybox

Deep Shah deep.shah at strixsystems.com
Tue Oct 30 06:43:14 CET 2012


Hi,

Thank you for your reply.

Here, radius server is at /usr/local/etc/raddb/ (which is on pc side) and I
have configured and put my client which is at /etc/raddb/server.

When I am getting " pam_radius_auth: packet from RADIUS server
192.168.100.27 fails verification: The shared secret is probably
incorrect."  on my radius client.

I am getting below error message on my server(written client here by
mistake in previous email).
"
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!!    Replacing User-Password in config items with Cleartext-Password.
!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
!!! Please update your configuration so that the "known good"
!!!
!!! clear text password is in Cleartext-Password, and not in User-Password.
!!!
!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
# Executing group from file /usr/local/etc/raddb//sites-enabled/default
+- entering group PAP {...}
[pap] login attempt with password "?U��?R�S4?H�0+R�"

[pap] Using clear text password "test"
 [pap] Passwords don't match
++[pap] returns reject
Failed to authenticate the user.
  WARNING: Unprintable characters in the password.  Double-check the shared
secret on the server and the NAS!
Using Post-Auth-Type Reject
"

Regards,
Deep
Regards,
Deep



On Tue, Oct 30, 2012 at 10:58 AM, Fajar A. Nugraha <list at fajar.net> wrote:

> On Tue, Oct 30, 2012 at 12:14 PM, Deep Shah <deep.shah at strixsystems.com>
> wrote:
> > Please find below my pam_radius_auth.conf file snap shot.
> > #  pam_radius_auth configuration file.  Copy to: /etc/raddb/server
>
> Is it in the correct place?
>
> Since your earlier logs says "/usr/local/etc/raddb", you might also
> try copying the file there, just in case.
>
> > Please find below my client.conf file snap shot which is taken from
> server
> > side. My client IP is 192.168.100.18 and my server IP is 192.168.100.27.
>
> That's not what you said in your earlier post
>
> > Can you please let me know which configuration is wrong if there is any?
>
> Not sure.
>
> For this I'd actually suggest you start with known good working
> config. Either RHEL/Centos or Ubuntu/Debian is usually a good place to
> start. IIRC last time I tested this with RHEL it works just fine.
> Assuming you configure it correctly (hint: read the READMEs and docs
> that comes with the source/package).
>
> After you at least got THAT to work, then start working on your
> busybox-thingy. Just in case it's busybox-specific bug, in which case
> you should probably ask the devs there.
>
> --
> Fajar
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20121030/0a445bcd/attachment.html>


More information about the Freeradius-Users mailing list