Errors authenticating certain users.

Migo Pod migopod at gmail.com
Tue Dec 29 20:25:27 CET 2015


The module configuration stuff was done by the previous admin, and it looks
like the same thing is in authorize in inner-tunnel.

I'm waiting for /etc/raddb to get recovered from tape so I can diff out the
configuration files.

Thanks,
-mat

On Tue, Dec 29, 2015 at 1:13 PM, Alan DeKok <aland at deployingradius.com>
wrote:

> On Dec 29, 2015, at 12:52 PM, Migo Pod <migopod at gmail.com> wrote:
> > In proxy.conf all of the defined realms have nostrip included, and the
> only
> > thing I can find that explicitly rewrites anything is a directive in the
> > NULL realm that sets Stripped-User-Name to mschap:User-Name when the
> > User-Name matches a /host\/[^\.].(.+)/ regex,
>
>   Uh... you can't put "unlang" directives into a module configuration.
>
>   Whatever you entered added to the configuration for the NULL real, it
> does nothing.  It never did anything.
>
> > and that's been in there
> > since at least 2013. I've tried removing that clause from the realm and
> it
> > didn't appear to affect anything.
>
>   Because it never did anything.
>
> > Other than that, I can't find anything
> > that sets User-Name to anything at all.
> >
> > Of course things changed on the 16th when updates ran, but none of the
> > files in /etc/raddb were modified since yum doesn't overwrite modified
> > files, and the rpm chagnelogs aren't being particularly helpful.
>
>   This is what backups are for, TBH.
>
>   Alan DeKok.
>
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>


More information about the Freeradius-Users mailing list