Hi ca nha!
(sorry vi may em khong viet Tieng Viet duoc)
Em co topo nhu sau :
Wireless Client )))))))) AP--------->RAS (tren Linux)------------->AD (win2k3)
Sau khi conf xong thang RAS va chay debug tren linux machine thi auth dc tat ca cac user cua domain nhung tu wireless client em khong auth duoc thong qua RAS.
Day la messages khi client auth qua RAS:
rad_recv: Access-Request packet from host 192.168.200.100:32773, id=14, length=60
User-Name = "RW"
User-Password = "123456"
Message-Authenticator = 0x88fb81831fd5ca3e7592c8e7f8285e7a
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 0
modcall[authorize]: module "preprocess" returns ok for request 0
modcall[authorize]: module "chap" returns noop for request 0
modcall[authorize]: module "mschap" returns noop for request 0
rlm_realm: No '@' in User-Name = "RW", looking up realm NULL
rlm_realm: No such realm "NULL"
modcall[authorize]: module "suffix" returns noop for request 0
rlm_eap: No EAP-Message, not doing EAP
modcall[authorize]: module "eap" returns noop for request 0
users: Matched entry DEFAULT at line 152
modcall[authorize]: module "files" returns ok for request 0
modcall: leaving group authorize (returns ok) for request 0
rad_check_password: Found Auth-Type System
auth: type "System"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 0
rlm_unix: [RW]: invalid shell [/bin/false]
modcall[authenticate]: module "unix" returns reject for request 0
modcall: leaving group authenticate (returns reject) for request 0
auth: Failed to validate the user.
Delaying request 0 for 1 seconds
Finished request 0
Going to the next request
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Sending Access-Reject of id 14 to 192.168.200.100 port 32773
Waking up in 4 seconds...
--- Walking the entire request list ---
Cleaning up request 0 ID 14 with timestamp 488dc829
Nothing to do. Sleeping until we see a request.
Tren linux machine em dung NTLM_AUTH thay cho LDAP
Co bac anh chi chi gium em RAS cua em da bi error o dau vay?
Thanks.
(sorry vi may em khong viet Tieng Viet duoc)
Em co topo nhu sau :
Wireless Client )))))))) AP--------->RAS (tren Linux)------------->AD (win2k3)
Sau khi conf xong thang RAS va chay debug tren linux machine thi auth dc tat ca cac user cua domain nhung tu wireless client em khong auth duoc thong qua RAS.
Day la messages khi client auth qua RAS:
rad_recv: Access-Request packet from host 192.168.200.100:32773, id=14, length=60
User-Name = "RW"
User-Password = "123456"
Message-Authenticator = 0x88fb81831fd5ca3e7592c8e7f8285e7a
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 0
modcall[authorize]: module "preprocess" returns ok for request 0
modcall[authorize]: module "chap" returns noop for request 0
modcall[authorize]: module "mschap" returns noop for request 0
rlm_realm: No '@' in User-Name = "RW", looking up realm NULL
rlm_realm: No such realm "NULL"
modcall[authorize]: module "suffix" returns noop for request 0
rlm_eap: No EAP-Message, not doing EAP
modcall[authorize]: module "eap" returns noop for request 0
users: Matched entry DEFAULT at line 152
modcall[authorize]: module "files" returns ok for request 0
modcall: leaving group authorize (returns ok) for request 0
rad_check_password: Found Auth-Type System
auth: type "System"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 0
rlm_unix: [RW]: invalid shell [/bin/false]
modcall[authenticate]: module "unix" returns reject for request 0
modcall: leaving group authenticate (returns reject) for request 0
auth: Failed to validate the user.
Delaying request 0 for 1 seconds
Finished request 0
Going to the next request
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Sending Access-Reject of id 14 to 192.168.200.100 port 32773
Waking up in 4 seconds...
--- Walking the entire request list ---
Cleaning up request 0 ID 14 with timestamp 488dc829
Nothing to do. Sleeping until we see a request.
Tren linux machine em dung NTLM_AUTH thay cho LDAP
Co bac anh chi chi gium em RAS cua em da bi error o dau vay?
Thanks.
Comment