Displaying 3 results from an estimated 3 matches for "authorization_groupnam".
Did you mean:
authorization_groupname
2023 Apr 03
2
Fwd: ntlm_auth and freeradius
...ok at the conf files then, first these two:
mods-enabled/ntlm_auth:
exec ntlm_auth {
???????wait = yes
???????shell_escape = yes
???????program = "/usr/bin/ntlm_auth --allow-mschapv2 --request-nt-key \
??????????????????--domain=example \
??????????????????--require-membership-of=example\authorization_groupname \
??????????????????--username=%{mschap:User-Name}
--password=%{User-Password}"
mods-enables/mschap
mschap {
???use_mppe = yes
???with_ntdomain_hack = yes
???require_encryption = yes
???require_strong = yes
???ntlm_auth = "/usr/bin/ntlm_auth --allow-mschapv2 --request-nt-key \
?...
2023 Apr 03
2
ntlm_auth and freeradius
Op 03-04-2023 om 16:05 schreef Tim ODriscoll via samba:
> Dear All,
>
> I'm trying to setup FreeRADIUS to authenticate a machine account to grant access to wifi for domain-connected machines. I think I've got the GPO's set up properly and the CA deployed to the clients, as I'm not getting any errors there.
>
> The errors I'm getting are to do with ntlm_auth not
2023 Apr 03
2
[EXTERNAL] Fwd: ntlm_auth and freeradius
> I guess we have to look at the conf files then, first these two:
Thank you for the config file snippets. I can confirm mine were almost identical, so I've tweaked them so that they are now exactly the same as yours except for the "--require-membership-of=example\authorization_groupname" line in ntlm_auth.
Unfortunately it's still erroring out:
(7) mschap: Creating challenge hash with username: host/SL-6S4BBS3.MYDOMAIN.co.uk
(7) mschap: Client is using MS-CHAPv2
(7) mschap: Executing: /usr/bin/ntlm_auth --request-nt-key --username=%{%{mschap:User-Name}:-00} --allow-msch...