MSCHAPv2 Module with Stripped-Username - no ActiveDirectory

Adam Bishop Adam.Bishop at jisc.ac.uk
Mon Nov 12 11:43:30 CET 2018


On 12 Nov 2018, at 10:09, Markus Maurer <lists at v-net.tk> wrote:
> You *cannot* make this work using MSCHAP and AD.It is working.

Did you send the right debug log? That shows a user being authenticated from a cleartext password in the users file and the stripped-user-name not being discarded:

  Debug: (1) mschap: Found Cleartext-Password, hashing to create NT-Password
  Debug: (1) mschap: Found Cleartext-Password, hashing to create LM-Password
  Debug: (1) mschap: Creating challenge hash with username: johndoe:123456

Adam Bishop

  gpg: E75B 1F92 6407 DFDF 9F1C  BF10 C993 2504 6609 D460

jisc.ac.uk

Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.

Jisc Services Limited is a wholly owned Jisc subsidiary and a company limited by guarantee which is registered in England under company number 2881024, VAT number GB 197 0632 86. The registered office is: One Castle Park, Tower Hill, Bristol BS2 0JA. T 0203 697 5800.  




More information about the Freeradius-Users mailing list