Guys,

I'm sending it in vain not believing that there's anyone at PF watching this
list.

Is Packetfence going through hard time? I even send a request about the
commercial support, no reply from anyone.

Still hoping someone will pick it up, please help !

 

I migrated  to a fresh install of PF ver 7.4 and rebuilt everything from
scratch keeping same realm, same AD domain, same authentication source, same
switches.conf file.

All my attempt to authenticate from Windows supplicants configured to use
PEAP are rejected and I see this error in RADIUS debugs

session-state:Module-Failure-Message := "mschap: Program returned code (1)
and output 'Reading winbind reply failed! (0xc0000001)'"

 

What bothers me and makes me crazy is that if I test it with pftest I don't
have any problem at all

 

[root@PacketFence-ZEN bin]# ./pftest authentication it.tech XXXXXXXXX

 

Authenticating against OPTIONS-AD-SOURCE

  Authentication SUCCEEDED against OPTIONS-AD-SOURCE (Authentication
successful.) 

  Matched against OPTIONS-AD-SOURCE for 'authentication' rules

    set_role : Staff

    set_unreg_date : 2019-12-31

 

I suspect there's something with permissions as what I see as the result of
ntlm_auth query prompts me about it

 

[root@PacketFence-ZEN bin]# ntlm_auth --request-nt-key --domain=optionsad
--username=it.tech

Password: 

could not obtain winbind separator!

Reading winbind reply failed! (0x01)

:  (0x0)

 

But what makes me even more frustrated is that wbinfo query returns all AD
groups and users:

 

[root@PacketFence-ZEN bin]# chroot /chroots/optionsad wbinfo -u

 

Eugene

 

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to