Re: helps with User-Password

2013-01-25 Thread Hocine M



Le 24/01/2013 16:17, a.l.m.bu...@lboro.ac.uk a écrit :

Hi,


A little question, when i run freeradius in debug mode ( freeradius -XX),
ii can't see the User-Password!

what method are you using? looks like EAP  - in which case , depending on the
phase2 method used, you might not see a user-password - for example PEAP  (well,
PEAPv0/MSCHAPv2) sends challenge-response method inside the EAP tunnel.


alan
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Yes , exactly...PEAP with MSCHAPV2 is used in this case.
Thanks a lot.

Hocine.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


helps with User-Password

2013-01-24 Thread Hocine M

Hello,

A little question, when i run freeradius in debug mode ( freeradius 
-XX), ii can't see the User-Password!


Sending Access-Request of id 167 to 195.220.94.130 port 1812
 NAS-Port-Id = AP41/1
 Calling-Station-Id = 74-2F-68-ED-12-1C
 Called-Station-Id = 00-0B-0E-A9-58-80:eduroam
 Service-Type = Framed-User
 EAP-Message = 0x0201001a01756e69762d6c696c6c65332e6672406372752e6672
 User-Name = univ-lille3...@cru.fr
 NAS-Port = 61847


This attibute must be displayed?

Thanks


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: helps with User-Password

2013-01-24 Thread A . L . M . Buxey
Hi,

A little question, when i run freeradius in debug mode ( freeradius -XX),
ii can't see the User-Password!

what method are you using? looks like EAP  - in which case , depending on the
phase2 method used, you might not see a user-password - for example PEAP  (well,
PEAPv0/MSCHAPv2) sends challenge-response method inside the EAP tunnel.


alan
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


Re: helps with User-Password

2013-01-24 Thread Stefan Winter
Hi,

 Sending Access-Request of id 167 to 195.220.94.130 port 1812
  NAS-Port-Id = AP41/1
  Calling-Station-Id = 74-2F-68-ED-12-1C
  Called-Station-Id = 00-0B-0E-A9-58-80:eduroam
  Service-Type = Framed-User
  EAP-Message = 0x0201001a01756e69762d6c696c6c65332e6672406372752e6672
  User-Name = univ-lille3...@cru.fr
  NAS-Port = 61847
 
 
 This attibute must be displayed?

No: there is no User-Password. This is an EAP request. Credentials are
sent inside the EAP-Message attribute, and strongly encrypted between
the source (user device) and the home RADIUS server at cru.fr. As an
intermediate party, this is all you will get.

Why are you interested in other users' passwords?

Greetings,

Stefan Winter

 
 Thanks
 
 
 
 
 -
 List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
 


-- 
Stefan WINTER
Ingenieur de Recherche
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et
de la Recherche
6, rue Richard Coudenhove-Kalergi
L-1359 Luxembourg

Tel: +352 424409 1
Fax: +352 422473



signature.asc
Description: OpenPGP digital signature
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: helps with User-Password

2013-01-24 Thread Hocine M



Le 24/01/2013 16:17, Stefan Winter a écrit :

Hi,


Sending Access-Request of id 167 to 195.220.94.130 port 1812
  NAS-Port-Id = AP41/1
  Calling-Station-Id = 74-2F-68-ED-12-1C
  Called-Station-Id = 00-0B-0E-A9-58-80:eduroam
  Service-Type = Framed-User
  EAP-Message = 0x0201001a01756e69762d6c696c6c65332e6672406372752e6672
  User-Name = univ-lille3...@cru.fr
  NAS-Port = 61847


This attibute must be displayed?

No: there is no User-Password. This is an EAP request. Credentials are
sent inside the EAP-Message attribute, and strongly encrypted between
the source (user device) and the home RADIUS server at cru.fr. As an
intermediate party, this is all you will get.



1This question because somene asked it to me and i was not enable to 
give an answer.

Thanks a lot.




Why are you interested in other users' passwords?

Greetings,

Stefan Winter


Thanks




-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html




-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html