Problems wpa2-tls eap mschapv2 ldap

Roberto Ortega Ramiro roberto.ortega at esj.es
Tue Jun 4 13:28:15 CEST 2013


Hi, the status can tag as solved.

I have uncomment the line ldap in
/etc/raddb/sites-enabled/inner-tunnel Authorize
section.

And it runs.

Thank you for your help.


2013/6/3 Roberto Ortega Ramiro <roberto.ortega at esj.es>

> Hi again, i have found this response
>
>
> http://lists.freeradius.org/pipermail/freeradius-users/2008-November/033229.html
>
> Tomorrow i will try with Authorize section.
>
> Thank you.
>
>
> 2013/6/3 Roberto Ortega Ramiro <roberto.ortega at esj.es>
>
>> Hi, i see this problem
>>
>>
>> # Executing group from file /etc/raddb/sites-enabled/inner-tunnel
>> +- entering group MS-CHAP {...}
>> [mschap] No Cleartext-Password configured.  Cannot create LM-Password.
>> [mschap] No Cleartext-Password configured.  Cannot create NT-Password.
>> [mschap] Creating challenge hash with username: clemente.blanch
>> [mschap] Told to do MS-CHAPv2 for clemente.blanch with NT-Password
>> [mschap] FAILED: No NT/LM-Password.  Cannot perform authentication.
>> [mschap] FAILED: MS-CHAP2-Response is incorrect
>> ++[mschap] returns reject
>> Failed to authenticate the user.
>> } # server inner-tunnel
>> [ttls] Got tunneled reply code 3
>> MS-CHAP-Error = "RE=691 R=1"
>> [ttls] Got tunneled Access-Reject
>> [eap] Handler failed in EAP/ttls
>>
>>
>> what must i change in /inner-tunnel file for authentification over ldap?
>>
>> I have to uncomment the ldap in every sections?
>> authorize
>> authenticate
>> post-auth
>>
>> I'm not at work now i will probe tomorrow as soon as i arrive.
>>
>> Thank you.
>>
>>
>>
>>
>> 2013/6/3 Alan DeKok <aland at deployingradius.com>
>>
>>> Roberto Ortega Ramiro wrote:
>>> > Hello, here request 46, i don`t know where is the problem.
>>> >
>>> > Is it possible the problem were on the access point?
>>>
>>>   No.
>>>
>>>   If you read the debug output, the problem should be clear.
>>>
>>>   If it's not clear, you haven't read the debug output.
>>>
>>>   Alan DeKok.
>>> -
>>> List info/subscribe/unsubscribe? See
>>> http://www.freeradius.org/list/users.html
>>>
>>
>>
>>
>> --
>> --
>> Un saludo.
>> ____________________
>>
>> Roberto Ortega
>> Profesor de Informática.
>> http://www.proyectoret.es
>>
>> Escuelas San José Valencia
>> Avd.Cortes Valencianas nº1
>> 46015 Valencia
>> R4600489A
>> Tf:963499011 ext. 262
>> Fax:963488835
>> http://www.escuelassj.com
>>
>> No imprimas este correo si no es necesario. Protejamos el medio ambiente.
>>
>
>
>
> --
> --
> Un saludo.
> ____________________
>
> Roberto Ortega
> Profesor de Informática.
> http://www.proyectoret.es
>
> Escuelas San José Valencia
> Avd.Cortes Valencianas nº1
> 46015 Valencia
> R4600489A
> Tf:963499011 ext. 262
> Fax:963488835
> http://www.escuelassj.com
>
> No imprimas este correo si no es necesario. Protejamos el medio ambiente.
>



-- 
-- 
Un saludo.
____________________

Roberto Ortega
Profesor de Informática.
http://www.proyectoret.es

Escuelas San José Valencia
Avd.Cortes Valencianas nº1
46015 Valencia
R4600489A
Tf:963499011 ext. 262
Fax:963488835
http://www.escuelassj.com

No imprimas este correo si no es necesario. Protejamos el medio ambiente.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20130604/327e5fc1/attachment-0001.html>


More information about the Freeradius-Users mailing list