[RADIATOR] Auth by LDAP Since Linux to Windows Server 2008
Jovanny Saravia
jovannotti at hotmail.com
Tue Jul 12 19:51:37 CDT 2011
Hello to all,
I am evaluating Radiator and I am trying to authenticate since a Linux Box to LDAP in a Windows Server 2008. I could connect to LDAP with AuthDN and AuthPassword, but I couldn't authenticate users.
This is the configuration part:# ---------------------------------------------------------------------------------------------------------------------------------- <AuthBy LDAP2> Host XXX AuthDN XXXX AuthPassword XXXX BaseDN cn=Users,dc=XXX,dc=XXX SearchFilter cn=Grupo,cn=SubGrupo (<--- I tried within and without this line) ServerChecksPassword UsernameAttr sAMAccountName Version 3 NoDefault </AuthBy># ----------------------------------------------------------------------------------------------------------------------------------
Testing ...
# ----------------------------------------------------------------------------------------------------------------------------------[user at server ~]$ /usr/bin/radpwtst -user USER -password PASS --noacct -auth_port 1812 sending Access-Request...Rejected: Request Denied[user at server ~]$ # ----------------------------------------------------------------------------------------------------------------------------------
And finally the log:# ----------------------------------------------------------------------------------------------------------------------------------[user at server ~]# Tue Jul 12 19:43:06 2011: DEBUG: Packet dump:*** Received from 127.0.0.1 port 35641 ....Code: Access-RequestIdentifier: 111Authentic: <131><239><211><29>h<29><223><198>@4<196>qp(<169><235>Attributes: User-Name = "USER" Service-Type = Framed-User NAS-IP-Address = 203.63.154.1 NAS-Identifier = "203.63.154.1" NAS-Port = 1234 Called-Station-Id = "123456789" Calling-Station-Id = "987654321" NAS-Port-Type = Async User-Password = <4><143><222><236><8>1.<0>d<230>!(_<227>+<162>
Tue Jul 12 19:43:06 2011: DEBUG: Handling request with Handler 'Realm=DEFAULT', Identifier ''Tue Jul 12 19:43:06 2011: DEBUG: Deleting session for USER, 203.63.154.1, 1234Tue Jul 12 19:43:06 2011: DEBUG: Handling with Radius::AuthGROUP: Tue Jul 12 19:43:06 2011: DEBUG: Handling with Radius::AuthLDAP2: Tue Jul 12 19:43:06 2011: INFO: Connecting to ldap:389Tue Jul 12 19:43:06 2011: INFO: Attempting to bind to LDAP server ldap:389Tue Jul 12 19:43:06 2011: DEBUG: No entries for dvalencia found in LDAP databaseTue Jul 12 19:43:06 2011: DEBUG: Radius::AuthLDAP2 looks for match with USER [USER]Tue Jul 12 19:43:06 2011: DEBUG: Radius::AuthLDAP2 REJECT: No such user: USER [USER]Tue Jul 12 19:43:06 2011: DEBUG: Radius::AuthGROUP: result: REJECT, No such userTue Jul 12 19:43:06 2011: DEBUG: AuthBy GROUP result: REJECT, No such userTue Jul 12 19:43:06 2011: INFO: Access rejected for USER: No such userTue Jul 12 19:43:06 2011: DEBUG: Packet dump:*** Sending to 127.0.0.1 port 35641 ....Code: Access-RejectIdentifier: 111Authentic: :<238><233>=[<22><132>v<202>N<207>d<216>F<224><159>Attributes: Reply-Message = "Request Denied"# ----------------------------------------------------------------------------------------------------------------------------------
Please somebody tellme what I am doing wrong or what I am missing in order to connect from radiator in linux to ldap in ms-windows server 2008
Rgds,
-- js
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.open.com.au/pipermail/radiator/attachments/20110712/2969317c/attachment.html
More information about the radiator
mailing list