(RADIATOR) no subject

Hugh Irvine hugh at open.com.au
Tue Mar 19 17:40:58 CST 2002


Hello Gopi -

Thanks for sending the configuration and trace.

It looks to me like your users file is not correctly set up, it should look 
like this:

# define users
# first line is check items (no trailing comma)
# second and following lines are reply items

gopikrishna Password = .....
	Service-Type = Framed-User,
	Framed-Protocol = PPP,
	......

If you still have problems, please send me a copy of the users file.

regards

Hugh


> Hello Everyone,
>
> I am new to radius.
> I downloaded the demo version of radiator 2.19 for Windows 2000 server to
>  test with our Radius clients. Our setup is like this.
> Our devices have radius client to authenticate the users who are logging in
>  to the device. For this, it will contact with the radius server with the
>  name and encrypted password. I configured the same key at the client and
> at the server(simple.cfg). But I am getting  reply "Redius Access Reject"
> message from Radiator. Could you please correct my problem.
> Any help in this is highly appreciated.
>
>
> Thanks,
> Gopi krishna.
>
> ---------------------------------------------------------------------------
>-- -----------------------------------------------------------------------
> Radiator Configuration file (simple.cfg)
> ---------------------------------------------------------------------------
>-- ------------------------------------------------------------------------
>
> Foreground
> LogStdout
> LogDir		.
> DbDir		.
> # User a lower trace level in production systems:
> Trace 		4
>
> # You will probably want to add other Clients to suit your site,
> # one for each NAS you want to work with
> <Client DEFAULT>
> 	Secret	mysecret
> 	DupInterval 0
> </Client>
>
> <Client 192.168.19.93>
> 	Secret	gopikrishna123
> 	DupInterval 0
> </Client>
>
> <Realm DEFAULT>
> 	<AuthBy FILE>
> 		Filename ./users
> 	</AuthBy>
> 	# Log accounting to a detail file
> 	AcctLogFileName	./detail
> </Realm>
>
>
> -------------------------------------------------------
> Packet dump
> --------------------------------------------------------
>
> Mon Mar 18 18:08:13 2002: DEBUG: Packet dump:
> *** Received from 192.168.19.93 port 1080 ....
> Code:       Access-Request
> Identifier: 135
> Authentic:  <165><157><1>K<11><147><8><178><230>M<220><220><17><21>p<157>
> Attributes:
>         User-Name = "gopikrishna"
>         User-Password =
> ")<15><238>+'<151>FQ4<196><164><127><142><170>3<174>" NAS-IP-Address =
> 192.168.19.93
>         NAS-Port-Type = Virtual
>
> Mon Mar 18 18:08:13 2002: DEBUG: Handling request with Handler
>  'Realm=DEFAULT' Mon Mar 18 18:08:13 2002: DEBUG:  Deleting session for
>  gopikrishna, 192.168.19.9 3,
> Mon Mar 18 18:08:13 2002: DEBUG: Handling with Radius::AuthFILE:
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match with
>  gopikrish na
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match with
>  DEFAULT Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT: Check
> item Service-Typ e expression 'Administrative-User' does not match '' in
> request Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match
> with DEFAULT1 Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT:
> Check item Service-Typ e expression 'Login-User' does not match '' in
> request Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match
> with DEFAULT2 Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT:
> Check item Service-Typ e expression 'Outbound-User' does not match '' in
> request Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match
> with DEFAULT3 Mon Mar 18 18:08:13 2002: WARNING: Could not find Identifier
> for Auth-Type 'Syst em'
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT: Could not find
>  Identif ier for Auth-Type 'System'
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match with
>  DEFAULT4 Mon Mar 18 18:08:13 2002: WARNING: Could not find Identifier for
>  Auth-Type 'Syst em'
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT: Could not find
>  Identif ier for Auth-Type 'System'
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match with
>  DEFAULT5 Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT:
> Username not prefixed with P
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE looks for match with
>  DEFAULT6 Mon Mar 18 18:08:13 2002: WARNING: This AuthBy does not know how
> to check Group membership
> Mon Mar 18 18:08:13 2002: DEBUG: Radius::AuthFILE REJECT: User gopikrishna
> is no t in Group group1
> Mon Mar 18 18:08:13 2002: INFO: Access rejected for gopikrishna: User
>  gopikrishn a is not in Group group1
> Mon Mar 18 18:08:13 2002: DEBUG: Packet dump:
> *** Sending to 192.168.19.93 port 1080 ....
> Code:       Access-Reject
> Identifier: 135
> Authentic:  <165><157><1>K<11><147><8><178><230>M<220><220><17><21>p<157>
> Attributes:
>         Reply-Message = "Request Denied"
>
> -------------------------------------------------------

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows 95/98/2000, NT, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
===
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list