[RADIATOR] lumc.nl question about AuthBy LSA

R.D.Runia at lumc.nl R.D.Runia at lumc.nl
Mon Mar 3 13:27:03 CST 2014


Hello support,

I am trying to authenticate against windows active directory with the AuthBy LSA.
This goes well without using the group item. That means that the communication with the window domain is OK . When I use the group item I cannot get a good authentication.
I am sure the user is a member of that specific group.
I have also tried to authenticate against a local group on the machine where Radiator is running on.
The result was the same. Ok without the group item and wrong with the group item.
I hope you can help me to find what I am doing wrong? Or can I better use LDAP2 instead  of LSA ?
I have the radius.cfg and the log file attached with this message.
This handler starts at line 40in the config file. In the log file the results of that handler starts at line 332.

Technical specs :
Radiator is running on a VM ware server with windows server 2003 this is our test server.
The windows domain controller is running under window 2008 R2 server.
I use activestate perl and installed the Win32-Lsa.ppd
Also the security policy (SE_TCB_PRIVILEGE) is enabled for the user Radiator is running.
We are using EAP PEAP with MSCHAPv2


My regards,

R.D.Runia
ICT expert datacommunicatie
Directoraat ICT
LUMC
tel +31 71-5262616

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.open.com.au/pipermail/radiator/attachments/20140303/4ba8846b/attachment-0001.html 
-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: log_2014-03-03_lsa.txt
Url: http://www.open.com.au/pipermail/radiator/attachments/20140303/4ba8846b/attachment-0001.txt 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: radius.cfg
Type: application/octet-stream
Size: 3962 bytes
Desc: radius.cfg
Url : http://www.open.com.au/pipermail/radiator/attachments/20140303/4ba8846b/attachment-0001.obj 


More information about the radiator mailing list