Ok, scratch half of my last message.  I left it configured for TLS.
PEAP isn't working for me.

I'm getting this failure:

  Processing the authenticate section of radiusd.conf
modcall: entering group Auth-Type for request 14
  rlm_mschap: No User-Password configured.  Cannot create LM-Password.
  rlm_mschap: No User-Password configured.  Cannot create NT-Password.
  rlm_mschap: Told to do MS-CHAPv2 for twebmailb with NT-Password
radius_xlat: Running registered xlat function of module mschap for
string 'Challenge'
 mschap2: 42
radius_xlat: Running registered xlat function of module mschap for
string 'NT-Response'
radius_xlat:  '/usr/bin/ntlm_auth --request-nt-key
--username=BSC\\twebmailb --challenge=8ec0d9d93c7445a4
--nt-response=3e1f2c38b97c2d93a4233ff908e79513315648b267f7b59a'
Exec-Program: /usr/bin/ntlm_auth --request-nt-key
--username=BSC\\twebmailb --challenge=8ec0d9d93c7445a4
--nt-response=3e1f2c38b97c2d93a4233ff908e79513315648b267f7b59a
Exec-Program output: Logon failure (0xc000006d) 
Exec-Program-Wait: plaintext: Logon failure (0xc000006d) 
Exec-Program: returned: 1
  rlm_mschap: External script failed.
  rlm_mschap: FAILED: MS-CHAP2-Response is incorrect

So it's coming down to the ntlm_auth  Is there a good writeup on this
part?  Is it nessacary? Config file made it seem it was one of two
different ways. I'm trying to authenticate to Acitve Directory.

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to