With local users for EAP PEAP you have to enable it and them make sure to 
change the password storage method in the db to NTLM or clear text.

We don’t advice the latter.

Make sure to change the user password once you change the password encryption 
method.

Thanks,

Ludovic Zammit
Product Support Engineer Principal

Cell: +1.613.670.8432
Akamai Technologies - Inverse
145 Broadway
Cambridge, MA 02142
Connect with Us:         <https://community.akamai.com/>  
<http://blogs.akamai.com/>  <https://twitter.com/akamai>  
<http://www.facebook.com/AkamaiTechnologies>  
<http://www.linkedin.com/company/akamai-technologies>  
<http://www.youtube.com/user/akamaitechnologies?feature=results_main>

> On Apr 27, 2022, at 10:33 AM, Renato Pereira 
> <renatobandeirapere...@hotmail.com> wrote:
> 
> Hi Zammit,
> 
> I don't have connection with one AND, I'm trying with local user.
> 
> Regards,
> 
> De: Zammit, Ludovic
> Enviadas: Quarta-feira, 27 de Abril de 2022 11:23
> Para: packetfence-users
> Cc: Renato Pereira
> Assunto: Re: [PacketFence-users] Problem for Authentication Wirelless via 
> EAP-PEAP
> 
> Hello Renato,
> 
> Remove the local realm config on your source.
> 
> Make sure to have a correct connection profile configured with an AD. Also, 
> make sure that your PF server(s) are join to the domain.
> 
> You are using the realm null I guess, make sure to send that realm null 
> authentication to your AD.
> 
> Thanks,
> 
> Ludovic Zammit
> Product Support Engineer Principal
> 
> Cell: +1.613.670.8432
> Akamai Technologies - Inverse
> 145 Broadway
> Cambridge, MA 02142
> Connect with Us:       <https://community.akamai.com/>  
> <http://blogs.akamai.com/>  
> <https://urldefense.com/v3/__https://twitter.com/akamai__;!!GjvTz_vk!UhdMYsCCqj7XAeHu6jKbO77rOpnDHL3VDZ9UTkEGpocRW8dfhFqwfcGQUI0vkxFdMoc2UDqah2hwso9Q3PTNovJ7XhA$>
>   
> <https://urldefense.com/v3/__http://www.facebook.com/AkamaiTechnologies__;!!GjvTz_vk!UhdMYsCCqj7XAeHu6jKbO77rOpnDHL3VDZ9UTkEGpocRW8dfhFqwfcGQUI0vkxFdMoc2UDqah2hwso9Q3PTNQEC7--U$>
>   
> <https://urldefense.com/v3/__http://www.linkedin.com/company/akamai-technologies__;!!GjvTz_vk!UhdMYsCCqj7XAeHu6jKbO77rOpnDHL3VDZ9UTkEGpocRW8dfhFqwfcGQUI0vkxFdMoc2UDqah2hwso9Q3PTNY1WhUuw$>
>   
> <https://urldefense.com/v3/__http://www.youtube.com/user/akamaitechnologies?feature=results_main__;!!GjvTz_vk!UhdMYsCCqj7XAeHu6jKbO77rOpnDHL3VDZ9UTkEGpocRW8dfhFqwfcGQUI0vkxFdMoc2UDqah2hwso9Q3PTNSN2G5DM$>
> 
>> On Apr 26, 2022, at 8:30 PM, Renato Pereira via PacketFence-users 
>> <packetfence-users@lists.sourceforge.net 
>> <mailto:packetfence-users@lists.sourceforge.net>> wrote:
>> 
>> Hi peoples,
>> 
>> I'm tried authentication one connection via EAP-PEAP with local user (SQL 
>> Internal), but not work, I get the log below:
>> 
>> Apr 27 00:21:18 LabPacketFence auth[2042]: (31) mschap: ERROR: Program 
>> returned code (1) and output 'Reading winbind reply failed! (0xc0000001)'
>> Apr 27 00:21:19 LabPacketFence packetfence[2497]: pfperl-api(1985) INFO: All 
>> cluster members are running the same configuration version 
>> (pf::pfcron::task::cluster_check::run)
>> Apr 27 00:21:18 LabPacketFence auth[2042]: (31) Login incorrect (mschap: 
>> Program returned code (1) and output 'Reading winbind reply failed! 
>> (0xc0000001)'): [renato] (from client <ip_address>/32 port 0 cli <mac> via 
>> TLS tunnel)
>> Apr 27 00:21:18 LabPacketFence auth[2042]: [mac:<mac>] Rejected user: renato
>> Apr 27 00:21:18 LabPacketFence auth[2042]: (32) Login incorrect (eap_peap: 
>> The users session was previously rejected: returning reject (again.)): 
>> [renato] (from client <ip_address>/32 port 0 cli <mac>)
>> Apr 27 00:21:19 LabPacketFence packetfence[2502]: pfperl-api(1978) INFO: 
>> processed 0 security_events during security_event maintenance 
>> (1651018879.8651 1651018879.8726) 
>> (pf::security_event::security_event_maintenance)
>> Apr 27 00:21:19 LabPacketFence packetfence[2502]: pfperl-api(1978) INFO: 
>> processed 0 security_events during security_event maintenance 
>> (1651018879.87529 1651018879.87732) 
>> (pf::security_event::security_event_maintenance)
>> 
>> I created the Authentication Sources using the ream local and set it in the 
>> source of the my connection profile.
>> 
>> Has anyone done this setup and is it working?
>> _______________________________________________
>> PacketFence-users mailing list
>> PacketFence-users@lists.sourceforge.net 
>> <mailto:PacketFence-users@lists.sourceforge.net>
>> https://urldefense.com/v3/__https://lists.sourceforge.net/lists/listinfo/packetfence-users__;!!GjvTz_vk!S9MofxKfw-K1RFPIuVCWtsHZPYs3TwtRtASKBOXY63RD5wLIaHejRYYAE4QDWxwUQCgH-dLBXcVDz7obeHK6_QICX5QD92A08AkTsQ$
>>  
>> <https://urldefense.com/v3/__https://lists.sourceforge.net/lists/listinfo/packetfence-users__;!!GjvTz_vk!S9MofxKfw-K1RFPIuVCWtsHZPYs3TwtRtASKBOXY63RD5wLIaHejRYYAE4QDWxwUQCgH-dLBXcVDz7obeHK6_QICX5QD92A08AkTsQ$>

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to