I am using freeradius-0.8.1 with openldap-2.1.22. and getting the following error messages:

 

--- Walking the entire request list ---

Sending Access-Reject of id 192 to 127.0.0.1:33299

Cleaning up request 0 ID 192 with timestamp 3f19d6f7

Nothing to do.  Sleeping until we see a request.

rad_recv: Access-Request packet from host 127.0.0.1:33299, id=192, length=59

        User-Name = "douguid"

        User-Password = "dougpw"

        NAS-IP-Address = 255.255.255.255

        NAS-Port = 0

modcall: entering group authorize

  modcall[authorize]: module "preprocess" returns ok

rlm_ldap: - authorize

rlm_ldap: performing user authorization for douguid

radius_xlat:  '(uid=douguid)'

radius_xlat:  'ou=people,dc=betterpath,dc=org'

ldap_get_conn: Got Id: 0

rlm_ldap: performing search in ou=people,dc=betterpath,dc=org, with filter (uid=douguid)

rlm_ldap: object not found or got ambiguous search result

rlm_ldap: search failed

ldap_release_conn: Release Id: 0

  modcall[authorize]: module "ldap" returns notfound

modcall: group authorize returns ok

auth: No authenticate method (Auth-Type) configuration found for the request: Rejecting the user

auth: Failed to validate the user.

Login incorrect (rlm_ldap: User not found): [douguid/dougpw] (from client localhost port 0)

===

My raddb/users file contains:

#

DEFAULT Auth-Type       :=      LDAP

#

/var/log/slapd.log conftains:

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on 1 descriptors

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: new connection on 12

Jul 21 13:56:47 nuddabox slapd[31376]: conn=8 fd=12 ACCEPT from IP=127.0.0.1:33324 (IP=0.0.0.0:389)

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: added 12r

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on:

Jul 21 13:56:47 nuddabox slapd[31376]:

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: select: listen=6 active_threads=0 tvp=NULL

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on 1 descriptors

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on:

Jul 21 13:56:47 nuddabox slapd[31376]:  12r

Jul 21 13:56:47 nuddabox slapd[31376]:

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: read activity on 12

Jul 21 13:56:47 nuddabox slapd[31386]: conn=8 op=0 BIND dn="" method=128

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: select: listen=6 active_threads=1 tvp=NULL

Jul 21 13:56:47 nuddabox slapd[31386]: conn=8 op=0 RESULT tag=97 err=0 text=

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on 1 descriptors

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: activity on:

Jul 21 13:56:47 nuddabox slapd[31376]:  12r

Jul 21 13:56:47 nuddabox slapd[31376]:

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: read activity on 12

Jul 21 13:56:47 nuddabox slapd[31386]: begin get_filter

Jul 21 13:56:47 nuddabox slapd[31376]: daemon: select: listen=6 active_threads=1 tvp=NULL

Jul 21 13:56:47 nuddabox slapd[31386]: EQUALITY

Jul 21 13:56:47 nuddabox slapd[31386]: end get_filter 0

Jul 21 13:56:47 nuddabox slapd[31386]: conn=8 op=1 SRCH base="ou=people,dc=betterpath,dc=org" scope=2 filter="(uid=douguid)"

Jul 21 13:56:47 nuddabox slapd[31386]: conn=8 op=1 SRCH attr=radiusExpiration acctFlags ntPassword lmPassword radiusCallingStationId radiusCalledStationId radiusSimultaneousUse radiusAuthType radiusCheckItem radiusLoginLATPort radiusPortLimit radiusFramedAppleTalkZone radiusFramedAppleTalkNetwork radiusFramedAppleTalkLink radiusLoginLATGroup radiusLoginLATNode radiusLoginLATService radiusTerminationAction radiusIdleTimeout radiusSessionTimeout radiusClass radiusFramedIPXNetwork radiusCallbackId radiusCallbackNumber radiusLoginTCPPort radiusLoginService radiusLoginIPHost radiusFramedCompression radiusFramedMTU radiusFilterId radiusFramedRouting radiusFramedRoute radiusFramedIPNetmask radiusFramedIPAddress radiusFramedProtocol radiusServiceType radiusReplyItem userPassword

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_filter_candidates

Jul 21 13:56:47 nuddabox slapd[31386]: ^IAND

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_list_candidates 0xa0

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_filter_candidates

Jul 21 13:56:47 nuddabox slapd[31386]: ^IDN SUBTREE

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_filter_candidates: id=5 first=15 last=19

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_filter_candidates

Jul 21 13:56:47 nuddabox slapd[31386]: ^IOR

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_list_candidates 0xa1

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_filter_candidates

Jul 21 13:56:47 nuddabox slapd[31386]: ^IEQUALITY

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_filter_candidates: id=0 first=0 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: => bdb_filter_candidates

Jul 21 13:56:47 nuddabox slapd[31386]: ^IEQUALITY

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_filter_candidates: id=0 first=0 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_list_candidates: id=0 first=0 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_filter_candidates: id=0 first=0 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_list_candidates: id=0 first=15 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: <= bdb_filter_candidates: id=0 first=15 last=0

Jul 21 13:56:47 nuddabox slapd[31386]: conn=8 op=1 SEARCH RESULT tag=101 err=0 nentries=0 text=

 

If I connect to ldap as this user with this password, I am successful, so I know I don’t have an issue with the user/password. Why won’t freeradius authenticate?

 

 

 

Michael deTreville

(904) 733-3871

 

Reply via email to