Hi Louis and list,

Next step on our 802.1x / radius journey:

In the pf docs, it says:

* "usermod -a -G winbindd_priv pf" to allow pf to authenticate users.

We are on debian7, and there is NO winbindd_priv group. (running 
sernet-samba-4.1.17)

Permissions on /var/lib/samba/winbindd_privileged are 750, root:root

I'm guessing this is the reason we're seeing this:

Tue May 26 16:37:45 2015 : Auth: Login incorrect (mschap: External 
script says Reading winbind reply failed! (0xc0000001)): [username] 
(from client 192.x.y.z port 14 cli 3c-79-e0-2f-41-f6 via TLS tunnel)

What is the best (and secure) way around this?

MJ



------------------------------------------------------------------------------
One dashboard for servers and applications across Physical-Virtual-Cloud 
Widest out-of-the-box monitoring support with 50+ applications
Performance metrics, stats and reports that give you Actionable Insights
Deep dive visibility with transaction tracing using APM Insight.
http://ad.doubleclick.net/ddm/clk/290420510;117567292;y
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to