From owner-freebsd-isp@FreeBSD.ORG Tue Sep 16 20:49:29 2003 Return-Path: Delivered-To: freebsd-isp@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 76F8416A4B3 for ; Tue, 16 Sep 2003 20:49:29 -0700 (PDT) Received: from mail.yazzy.org (yazzy.org [217.8.140.3]) by mx1.FreeBSD.org (Postfix) with ESMTP id 6356D43F3F for ; Tue, 16 Sep 2003 20:49:28 -0700 (PDT) (envelope-from freebsd@yazzy.org) Received: from localhost (localhost [127.0.0.1]) by mail.yazzy.org (Postfix) with ESMTP id A074439871; Wed, 17 Sep 2003 05:49:24 +0200 (CEST) Received: from mail.yazzy.org ([127.0.0.1]) by localhost (urukhai.yazzy.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 61440-06; Wed, 17 Sep 2003 05:49:24 +0200 (CEST) Received: from yazzy.solheim (yazzy [192.168.98.11]) by mail.yazzy.org (Postfix) with SMTP id 916E13986F; Wed, 17 Sep 2003 05:49:21 +0200 (CEST) Date: Wed, 17 Sep 2003 05:28:46 +0200 From: Martin Jessa To: freebsd-isp@freebsd.org Message-Id: <20030917052846.74b40df5.freebsd@yazzy.org> In-Reply-To: <03Sep17.032612nzst.336011@homer.fire.org.nz> References: <20030917030343.52426383.freebsd@yazzy.org> <20030917022435.GA14843@laptop.lambertfam.org> <20030917045828.4c7f7ec9.freebsd@yazzy.org> <03Sep17.032612nzst.336011@homer.fire.org.nz> Organization: WRS ASA X-Mailer: Sylpheed version 0.9.0claws (GTK+ 1.2.10; i686-pc-linux-gnu) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit cc: andy@fud.org.nz Subject: Re: FreeRadius and md5 hashed passwords X-BeenThere: freebsd-isp@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Internet Services Providers List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 17 Sep 2003 03:49:29 -0000 Great! It worked. Thanks a bunch Andy :) rlm_pap: Using MD5 encryption. rlm_pap: User authenticated succesfully modcall[authenticate]: module "pap" returns ok modcall: group authtype returns ok Sending Access-Accept of id 216 to 127.0.0.1:58965 On Wed, 17 Sep 2003 15:28:18 +1200 Andrew Thompson wrote: > Martin Jessa wrote: > > Hi Scott, guys. > > > > I am stucked. I made some changes in the config file and added Auth-Type to the radgroupcheck table (which was previously empty) and now I cannot authenticate at all. > > Seems like the problem is somewhere else. > > > > My radiusd.conf: > > > > modules { > > mschap { > > authtype = MD5 > > use_mppe = yes > > require_encryption = yes > > require_strong = yes > > encryption_scheme = md5 > > } > > > > > > My understanding was that chap required the password on the sever to be > in plain text, so MD5 could not be used. The response from the client > is encrypted with the password, so if its also encrypted locally, it > cant be checked. > > You may need to use pap. > > > Andy > > _______________________________________________ > freebsd-isp@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-isp > To unsubscribe, send any mail to "freebsd-isp-unsubscribe@freebsd.org"