Displaying 8 results from an estimated 8 matches for "chapv1".
2019 Aug 30
6
Samba 4.10.7 + freeradius 3.0.17 +ntlm_auth - Debian buster
...server to the domain.
Now im at : Configuring FreeRADIUS to use ntlm_auth for MS-CHAP
And i just can not get this to work.
What i notice.
(0) Found Auth-Type = mschap
(0) # Executing group from file /etc/freeradius/3.0/sites-enabled/default
(0) authenticate {
(0) mschap: Client is using MS-CHAPv1 with NT-Password
(0) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2 --request-nt-key --username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}} --domain=NTDOM --challenge=%{%{mschap:Challenge}:-00} --nt-response=%{%{mschap:NT-Response}:-00}:
(0) mschap: EXPAND --username=%{%{Stripped-User-N...
2019 Aug 30
0
Samba 4.10.7 + freeradius 3.0.17 +ntlm_auth - Debian buster
...figuring FreeRADIUS to use ntlm_auth for MS-CHAP
> And i just can not get this to work.
>
> What i notice.
>
> (0) Found Auth-Type = mschap
> (0) # Executing group from file /etc/freeradius/3.0/sites-enabled/default
> (0) authenticate {
> (0) mschap: Client is using MS-CHAPv1 with NT-Password
> (0) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2 --request-nt-key --username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}} --domain=NTDOM --challenge=%{%{mschap:Challenge}:-00} --nt-response=%{%{mschap:NT-Response}:-00}:
> (0) mschap: EXPAND --username=%{%{Strip...
2019 Aug 30
0
Samba 4.10.7 + freeradius 3.0.17 +ntlm_auth - Debian buster
...AP
> > And i just can not get this to work.
> >
> > What i notice.
> >
> > (0) Found Auth-Type = mschap
> > (0) # Executing group from file
> /etc/freeradius/3.0/sites-enabled/default
> > (0) authenticate {
> > (0) mschap: Client is using MS-CHAPv1 with NT-Password
> > (0) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2
> --request-nt-key
> --username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}}
> --domain=NTDOM --challenge=%{%{mschap:Challenge}:-00}
> --nt-response=%{%{mschap:NT-Response}:-00}:
> > (0) m...
2019 Aug 30
1
Samba 4.10.7 + freeradius 3.0.17 +ntlm_auth - Debian buster
...t can not get this to work.
>>>
>>> What i notice.
>>>
>>> (0) Found Auth-Type = mschap
>>> (0) # Executing group from file
>> /etc/freeradius/3.0/sites-enabled/default
>>> (0) authenticate {
>>> (0) mschap: Client is using MS-CHAPv1 with NT-Password
>>> (0) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2
>> --request-nt-key
>> --username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}}
>> --domain=NTDOM --challenge=%{%{mschap:Challenge}:-00}
>> --nt-response=%{%{mschap:NT-Response}:-0...
2023 Apr 03
2
[EXTERNAL] Fwd: ntlm_auth and freeradius
On Mon, 2023-04-03 at 15:08 +0000, Tim ODriscoll via samba wrote:
> Unfortunately it's still erroring out:
> (7) mschap: Creating challenge hash with username: host/SL-6S4BBS3.MYDOMAIN.co.uk
> (7) mschap: Client is using MS-CHAPv2
Is this set as a UPN (with the realm appended) on the user?
--
Andrew Bartlett (he/him) https://samba.org/~abartlet/
Samba Team Member (since 2001)
2023 Apr 04
1
Fwd: ntlm_auth and freeradius
...m auth = mschapv2-and-ntlmv2-only
So, am I correct in thinking that the ntlm_auth client is not using ntlmv2?
FreeRADIUS reports this on the error:
(21) Found Auth-Type = mschap
(21) # Executing group from file /etc/raddb/sites-enabled/default
(21) authenticate {
(21) mschap: Client is using MS-CHAPv1 with NT-Password
(21) mschap: Executing: /usr/bin/ntlm_auth --request-nt-key --username=%{%{mschap:User-Name}:-00} --allow-mschapv2 --domain=lambrook --challenge=%{%{mschap:Challenge}:-00} --nt-response=%{%{mschap:NT-Response}:-00}:
(21) mschap: EXPAND --username=%{%{mschap:User-Name}:-00}
(21) msc...
2019 Sep 28
5
problems after migrating NT domain to AD (samba 4.7.x)
...?????? MS-CHAP-Error = "\000E=691 R=1 C=31fc8a6f22e0e329 V=2"
(0) -: Expected Access-Accept got Access-Reject
Output from radiusd -X
(614) Found Auth-Type = MSCHAP
(614) # Executing group from file /etc/raddb/sites-enabled/default
(614)?? authenticate {
(614) mschap: Client is using MS-CHAPv1 with NT-Password
(614) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2
--request-nt-key --domain=WSISIZ.EDU.PL
--username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}}
--challenge=%{%{mschap:Challenge}:-00}
--nt-response=%{%{mschap:NT-Response}:-00}:
(614) mschap: EXPAND
--username=%{...
2019 Sep 30
0
problems after migrating NT domain to AD (samba 4.7.x)
...31fc8a6f22e0e329 V=2"
> (0) -: Expected Access-Accept got Access-Reject
>
>
> Output from radiusd -X
>
> (614) Found Auth-Type = MSCHAP
> (614) # Executing group from file /etc/raddb/sites-enabled/default
> (614)?? authenticate {
> (614) mschap: Client is using MS-CHAPv1 with NT-Password
> (614) mschap: Executing: /usr/bin/ntlm_auth --allow-mschapv2
> --request-nt-key --domain=WSISIZ.EDU.PL
> --username=%{%{Stripped-User-Name}:-%{%{User-Name}:-None}}
> --challenge=%{%{mschap:Challenge}:-00}
> --nt-response=%{%{mschap:NT-Response}:-00}:
> (614)...