(RADIATOR) Radiator and LDAP2 - multiple realm

Steve Caporossi capoross at musc.edu
Tue Oct 14 14:55:04 CDT 2003


I am running radiator 3.7.1 on RH7.3.  We are, and have been using 
AuthBy UNIX and the Odyssey Client for months to authenticate our 
wireless users.  Now, I would like to authenticate users based on 
whether or not they are trying to login to the domain or not.  When a 
user logs in with domain\username, I have been unable to get the request 
to be handled by the proper handler. I have placed the rewrite username 
in multiple locations but, never see the handler being used, only the 
tunnelled by TTLS is ever invoked.  I have read the manual but obviously 
missed something...Can someone point me in the right direction?

As a workaround, I tried using ContinueUntilAccept in the tunnelled by 
TTLS handler and then I fail with the info below.  I verified  the 
username and password are correct so, is there another module required?

See below....
Mon Oct 13 16:03:59 2003: DEBUG: Handling with Radius::AuthLDAP2:
Mon Oct 13 16:03:59 2003: INFO: Connecting to <servername>, port 389
Mon Oct 13 16:03:59 2003: INFO: Attempting to bind to LDAP server 
<servername>:389)
Mon Oct 13 16:03:59 2003: ERR: Could not bind connection with 
CN=Radtest,OU=admin,DC=testrealm,DC=local, <password>, error: 
LDAP_INVALID_CREDENTIALS (server <servername>:389).
Mon Oct 13 16:03:59 2003: ERR: Backing off from <servername>:389 for 600 
seconds

Thanks,
-- 
Steve
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: ad-test.cfg
URL: <http://www.open.com.au/pipermail/radiator/attachments/20031014/02269c71/attachment.ksh>


More information about the radiator mailing list