(RADIATOR) radiator not padding out short passowrd fields

Mike McCauley mikem at open.com.au
Tue Aug 31 17:34:25 CDT 2004


Hello Tariq,


On Wednesday 01 September 2004 00:38, Tariq Rashid wrote:
> to continue the discussion on the lucent stinger which is sending out short
> password fields (much less than 16 octets) ...
>
> we suspect that because other radius servers work - they may be copying the
> password from the radius packet to a zero padded buffer... which a
> perl-based radiator may not... hence failing the authentication.
>
> is this correct?
>
> that is not to say that the radiator behaviour is incorrect - we know that
> the lucent is behaving badly.
Correct.

>
> also - the radiators which fail these authentications is at version 3.5 ...
> and 3.8 doesn't exhibit this problem. is this an issue that is known to
> have been fixed since that version?

I cant see mention of any relevant changes between those versions. If you 
would care to send an example packet at trace level 5, along with  the shared 
secret and the correct password, I can confirm your observations.

Cheers.

 
>
> tariq
>
> --
> Archive at http://www.open.com.au/archives/radiator/
> Announcements on radiator-announce at open.com.au
> To unsubscribe, email 'majordomo at open.com.au' with
> 'unsubscribe radiator' in the body of the message.

-- 
Mike McCauley                               mikem at open.com.au
Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
9 Bulbul Place Currumbin Waters QLD 4223 Australia   http://www.open.com.au
Phone +61 7 5598-7474                       Fax   +61 7 5598-7070

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP etc on Unix, Windows, MacOS etc.

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list