NTLM permission denied

Tomasz Śliwa tomeks at kia.prz.edu.pl
Thu Jan 17 22:44:41 CET 2019


Hello Luke,

W dniu 17.01.2019 o 22:31, Luke Smith pisze:
> (0) Sent Access-Reject Id 46 from 192.168.8.107:1812 to 
> 66.220.139.158:58804 length 101
> (0)   MS-CHAP-Error = "\000E=691 R=1 
> C=261d7709d3461a23eaef3f02487a760a V=3 M=Authentication failed"
> Waking up in 3.9 seconds.
> (0) Cleaning up request packet ID 46 with timestamp +3
> Ready to process requests

If your AD Server is Samba 4, on the server into file 
/etc/samba/smb.conf try to add line:

  ntlm auth = mschapv2-and-ntlmv2-only

This configuration is required not only on AD Member with Freeradius, it 
is required on Samba AD server, too.

Tomasz Śliwa



More information about the Freeradius-Users mailing list