Problem: switch authentication against Freeradius server

Franks Andy (RLZ) IT Systems Engineer Andy.Franks at sath.nhs.uk
Thu May 23 22:55:20 CEST 2013


What you're after is in the clients -  file surely - that's where you
set up the clients and secrets..? Otherwise maybe check if the secret in
your switch is encrypted or not, cisco switches allow input of a 7 or 0
after certain commands to signify encryption or not - from a cisco NAS..
Not sure if allied is the same, not seen one.

 

0     Specifies an UNENCRYPTED key will follow

7     Specifies HIDDEN key will follow

 

I dunno,maybe I am on the wrong tack - can't pretend I know much!

Andy

 

 

From:
freeradius-users-bounces+andy.franks=sath.nhs.uk at lists.freeradius.org
[mailto:freeradius-users-bounces+andy.franks=sath.nhs.uk at lists.freeradiu
s.org] On Behalf Of Roberto Carna
Sent: 23 May 2013 15:52
To: FreeRadius users mailing list
Subject: Re: Problem: switch authentication against Freeradius server

 

OK, but using "radtest" utility with user, password and shared secret
from other machine, I get the correct response from Freeradius,
accepting the authentication.

 

So, the problem maybe is in my Allied switch, maybe the OS is wrong in
certain aspects like cipher libraries.

 

Thanks to all.

 

2013/5/23 Alan DeKok <aland at deployingradius.com>

Roberto Carna wrote:
> OK, just a last question....I have Freeradius with MySQL, where is the
> NAS in order to check the pre-shared secret ???

  If you have already edited the shared secret, you should know where it
is.

  Go read the documentation.

  If you're too lazy to read it, I'm too lazy to cut & paste it here.


  Alan DeKok.
-
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20130523/d941730e/attachment-0001.html>


More information about the Freeradius-Users mailing list