help-gnu-radius
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Help-gnu-radius] MPD don't send password to radius


From: Konstantin Volevatch
Subject: [Help-gnu-radius] MPD don't send password to radius
Date: Tue, 3 Feb 2004 17:49:48 +0300
User-agent: KMail/1.5.4

MPD + gnu-radius + mysql

Authorized gracefully via mpd.secret (from WinXP),
radius accounting works,
"radauth cox gbgbcmrf" says "PASS" (when password stored with "encrypt()")
but when attempt authorize via radius, system says:
Auth.notice: (Access-Request local 60 "cox" CLID=192.168.1.2): Login incorrect 
[cox/]

Any suggestions?

My config:

Microsoft Dictionary included in raddb/dictionary,

clients:
#Client Name            Key
#----------------       -------------------
127.0.0.1               gbgbcmrf

naslist:
# NAS Name              Short Name      Type            Flags
#----------------       ----------      ----            ---------------
127.0.0.1               local           radiusd

users:
DEFAULT         Auth-Type = SQL
                Service-Type = Framed-User

mysql> select * from passwd;
+-----------+---------------+------------+--------+
| user_name | password      | service    | active |
+-----------+---------------+------------+--------+
| cox       | E0Qq0WcK7KSKk | Framed-PPP | Y      |
+-----------+---------------+------------+--------+

mysql> select * from attrib;
+-----------+-------------------+-------------+------+
| user_name | attr              | value       | op   |
+-----------+-------------------+-------------+------+
| cox       | Framed-Protocol   | PPP         | NULL |
| cox       | Framed-IP-Address | 192.168.2.1 | NULL |
+-----------+-------------------+-------------+------+


mpd.conf:
default:
        load client1
        load client2
        set pptp self 192.168.1.1
        set iface disable on-demand
        set pptp enable incoming
        set pptp disable originate
        set iface enable proxy-arp
        set iface idle 1800
        set iface enable tcpmssfix
        set bundle enable multilink
        set link yes acfcomp protocomp
        set link enable chap-md5 chap-msv1 chap-msv2
        set link mtu 1460
        set link keep-alive 10 60
        set ipcp yes vjcomp
        set ipcp dns 192.168.1.1
        set bundle disable compression
        set ccp no mppc
        set ccp no mpp-e40
        set ccp no mpp-e128
        set ccp no mpp-stateless
        set radius server 127.0.0.1 local gbgbcmrf
        set radius timeout 15
        set radius retries 4
        set radius config /usr/local/etc/mpd/radius.conf
        set radius me 127.0.0.1
        set radius acct-update 60
        set bundle enable radius-auth
        set bundle enable radius-acct
        set ipcp enable radius-ip
        set bundle max-logins 1

/usr/local/etc/mpd/radius.conf:
auth 127.0.0.1:1812 gbgbcmrf
acct 127.0.0.1:1813 gbgbcmrf

-- 
Regards,
Konstantin Volevatch





reply via email to

[Prev in Thread] Current Thread [Next in Thread]