ppp and radius authentication

From: Robert Blacquiere (freebsd-net_at_guldan.demon.nl)
Date: 04/27/04

  • Next message: David Yeske: "Re: netgraph arp issues vs linux veth"
    Date: Tue, 27 Apr 2004 10:34:37 +0200
    To: freebsd-net@freebsd.org
    
    

    Hi,

    I'm working on a system giving access with pptp to our network.
    I'd like to move the users from the /etc/ppp/ppp.sercet and have
    them in a radius server. I have build a test setup but it fails
    the authentication using radius. If i debug it seems ppp sends
    a radius paket without a username and passwd (with pap). The
    radius server will reject this. Is there something missing?
    or have i overlooked some thing. With /etc/ppp/ppp.secret it works
    normaly as expected.

    I use the ppp option set radius /etc/radius.conf
    and have there 2 lines in.

    auth my_radius.server my_big_secret
    acct my_radius.server my_big_secret

    Also i did some tcpdumps to see if the radius server is missing the
    usernames. but when analysing the dump it is a empty username.

    Robert

    -- 
    Microsoft: Where do you want to go today?
    Linux: Where do you want to go tomorrow?
    FreeBSD: Are you guys coming or what?
    OpenBSD: Hey guys you left some holes out there!
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
    

  • Next message: David Yeske: "Re: netgraph arp issues vs linux veth"

    Relevant Pages

    • Re: PEAP, WinXP, IAS, wrong username
      ... Are you using Radius MAC in the access point? ... > I've set up one DC, running win2003, one RADIUS server, also running ... because if turn off "authenticate users on this ... it seems like this username is based on the MAC-adress on the clients NIC. ...
      (microsoft.public.internet.radius)
    • Re: CISCO - IAS Authentication
      ... Router# username USERNAME password PASSWORD ... Then you specify that you first want to authenticate using radius and then the local database: ... > We recently enabled Radius authentication on our Cisco routers...to comply ...
      (microsoft.public.internet.radius)
    • ppp and radius authentication
      ... the authentication using radius. ... a radius paket without a username and passwd. ... radius server will reject this. ... Also i did some tcpdumps to see if the radius server is missing the ...
      (freebsd-questions)
    • radius authentication and user ppp
      ... the authentication using radius. ... a radius paket without a username and passwd. ... radius server will reject this. ... Also i did some tcpdumps to see if the radius server is missing the ...
      (freebsd-isp)
    • Authentication with RADIUS server/client
      ... Just told me I had to look up the username and ... password on a Radius client. ... my .NET solution? ...
      (microsoft.public.windowsxp.network_web)