Proxy Treatment of PAP/Chap Auth Types

Matthew Newton mcn4 at leicester.ac.uk
Fri May 3 14:51:19 CEST 2013


On Fri, May 03, 2013 at 04:46:27AM +0200, James T Mugauri wrote:
> attributes so: radtest -t <type> iS_u2h4gna a2uwv localhost 1812
...
> [chap] login attempt by "iS_u2h4gna" with CHAP password
> [chap] Using clear text password "uz3f9" for user iS_u2h4gna authentication.
> [chap] Password check failed
...
> +- entering group PAP {...}
> [pap] login attempt with password "a2uwv"
> [pap] Using clear text password "uz3f9"
> [pap] Passwords don't match

Have you tried testing it with the right password?

Otherwise, you should post the *full* output of radiusd -X for the
startup and test request going through both servers so we can see
what's happening. A small section doesn't help much.

You should use Cleartext-Password in place of User-Password in the
config. There is no difference, and User-Password is deprecated
and going away in 3.0.

Matthew



-- 
Matthew Newton, Ph.D. <mcn4 at le.ac.uk>

Systems Specialist, Infrastructure Services,
I.T. Services, University of Leicester, Leicester LE1 7RH, United Kingdom

For IT help contact helpdesk extn. 2253, <ithelp at le.ac.uk>


More information about the Freeradius-Users mailing list