MSCHAPv2 Module with Stripped-Username - no ActiveDirectory
Adam Bishop
Adam.Bishop at jisc.ac.uk
Mon Nov 12 11:43:30 CET 2018
On 12 Nov 2018, at 10:09, Markus Maurer <lists at v-net.tk> wrote:
> You *cannot* make this work using MSCHAP and AD.It is working.
Did you send the right debug log? That shows a user being authenticated from a cleartext password in the users file and the stripped-user-name not being discarded:
Debug: (1) mschap: Found Cleartext-Password, hashing to create NT-Password
Debug: (1) mschap: Found Cleartext-Password, hashing to create LM-Password
Debug: (1) mschap: Creating challenge hash with username: johndoe:123456
Adam Bishop
gpg: E75B 1F92 6407 DFDF 9F1C BF10 C993 2504 6609 D460
jisc.ac.uk
Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.
Jisc Services Limited is a wholly owned Jisc subsidiary and a company limited by guarantee which is registered in England under company number 2881024, VAT number GB 197 0632 86. The registered office is: One Castle Park, Tower Hill, Bristol BS2 0JA. T 0203 697 5800.
More information about the Freeradius-Users
mailing list