freeradius and AD auth with option require-membership-of

Stefan Paetow Stefan.Paetow at ja.net
Wed Sep 10 16:37:14 CEST 2014


The s-1-5-21-241... string is a string representation of a Windows SID (Security ID). 

Not sure how that came out, but yeah... ntlm_auth seems to be broken.

Stefan

> -----Original Message-----
> From: freeradius-users-bounces+stefan.paetow=ja.net at lists.freeradius.org
> [mailto:freeradius-users-
> bounces+stefan.paetow=ja.net at lists.freeradius.org] On Behalf Of Alan
> DeKok
> Sent: 10 September 2014 14:53
> To: Попов Александр; FreeRadius users mailing list
> Subject: Re: freeradius and AD auth with option require-membership-of
> 
> Попов Александр wrote:
> > Ubuntu 14.04, freeradius 2.1.12+dfsg-1.1ubuntu0.1
> 
>   Upgrade to 2.2.5.
> 
> > When I add in mschap this option in debug I see:
> >
> > Could not parse s-1-5-21-241991751-2423211274-3836920987-1626 into
> > separate domain/name parts!
> > *** Error in `/usr/bin/ntlm_auth': free(): invalid pointer:
> > 0x00007f13562b9e9c ***
> > Exec-Program output: ?▒t?▒r▒▒▒<???▒▒▒▒1▒?▒▒I?|$?H?▒??j▒▒▒▒▒r
> (0xc000000d)
> > Exec-Program-Wait: plaintext:
> ?▒t?▒r▒▒▒<???▒▒▒▒1▒?▒▒I?|$?H?▒??j▒▒▒▒▒r
> 
>   It looks like the ntlm_auth program is buggy.  Fix that.
> 
>   This isn't a FreeRADIUS issue.
> 
>   Alan DeKok.
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html

Janet(UK) is a trading name of Jisc Collections and Janet Limited, a 
not-for-profit company which is registered in England under No. 2881024 
and whose Registered Office is at Lumen House, Library Avenue,
Harwell Oxford, Didcot, Oxfordshire. OX11 0SG. VAT No. 614944238



More information about the Freeradius-Users mailing list