Re: Assign VLAN from freeradius to Cisco 3550 switch.

2012-04-25 Thread Wassim Zaarour
Hi Alan and thanks for your reply, I changed it as you suggested and I still got the same behavior: Users wassim Cleartext-Password := wassim Tunnel-Medium-Type = IEEE-802, Tunnel-Type = VLAN, Tunnel-Private-Group-Id = 100 Radiusd -X: # Executing section post-auth from

Re: Assign VLAN from freeradius to Cisco 3550 switch.

2012-04-25 Thread Wassim Zaarour
, Wassim Zaarour wrote: Hi Alan and thanks for your reply, I changed it as you suggested and I still got the same behavior: You're sending the right replies; the problem is with the NAS. Suggest you consult the Cisco docs. The 3550 is an older switch; are you sure it *does* VLAN assignment? - List

Re: Assign VLAN from freeradius to Cisco 3550 switch.

2012-04-25 Thread Wassim Zaarour
clear: 3w6d: RADIUS: no appropriate authorization type for user. David From: freeradius-users-bounces+davidp=wirelessconnections@lists.freeradius.org [mailto:freeradius-users-bounces+davidp=wirelessconnections.net@lists.freera dius.org] On Behalf Of Wassim Zaarour Sent: Wednesday

Re: Assign VLAN from freeradius to Cisco 3550 switch.

2012-04-25 Thread Wassim Zaarour
Hi Brian, Thanks for your reply, where do I exactly need to put this configuration? In the users file? Do you have any experience with the 2960 switches? Wassim On 4/25/12 4:07 PM, Brian Julin bju...@clarku.edu wrote: Wassim Zaarour wrote: Look at this http://www.mail-archive.com

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-20 Thread Wassim Zaarour
Buxey a.l.m.bu...@lboro.ac.uk Date: Friday, April 20, 2012 9:30 AM To: Wassim Zaarour wassim.zaar...@navlink.com, freeradius-users@lists.freeradius.org freeradius-users@lists.freeradius.org Subject: Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails. Please read the mailing list archives, this very

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-20 Thread Wassim Zaarour
On 4/20/12 10:15 AM, Fajar A. Nugraha l...@fajar.net wrote: On Fri, Apr 20, 2012 at 2:09 PM, Wassim Zaarour wassim.zaar...@navlink.com wrote: Hi Alan, I went through the archives and did some changes but still getting the error, appreciate of you can help me a bit here. I think I read

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-20 Thread Wassim Zaarour
stuck with the windows laptops as they have PEAP/MSCHAPv2 only. Any workaround? Thanks Wassim. On 4/20/12 10:30 AM, Fajar A. Nugraha l...@fajar.net wrote: On Fri, Apr 20, 2012 at 2:22 PM, Wassim Zaarour wassim.zaar...@navlink.com wrote: On 4/20/12 10:15 AM, Fajar A. Nugraha l...@fajar.net

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-20 Thread Wassim Zaarour
...@deployingradius.com wrote: Wassim Zaarour wrote: Hi Farja, I just checked with the ldap admin and he told me passwords are stored with SHA encryption and not cleartext. ( can't change them to clear text) Does that means there is no way to make TTLS/PEAP/MSCHAPv2 work with it?? If I use TTLS/PAP from

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-20 Thread Wassim Zaarour
It's Sun Directory Server, hence LDAP not AD. Thanks anyways :) On 4/20/12 11:18 AM, alan buxey a.l.m.bu...@lboro.ac.uk wrote: Hi, I just checked with the ldap admin and he told me passwords are stored with SHA encryption and not cleartext. ( can't change them to clear text) is this

Re: Configuring Freeradius with LDAP

2012-04-19 Thread Wassim Zaarour
http://wiki.freeradius.org/Rlm_ldap Has what you are after. Mark On 18 Apr 2012, at 18:53, Wassim Zaarour wassim.zaar...@navlink.commailto:wassim.zaar...@navlink.com wrote: Hi List, I have installed freeradius 2.1.12, and it's working well. Now I need to configure it to authenticate

LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-19 Thread Wassim Zaarour
Hi List, I have set up Freeadius 2.1.10 to authenticate with ldap. I have a cisco switch and using my Mac Laptop to connect. If I try to connect using ldap credentials the authentication fails, though the same credentials work if I use them with radtest on the localhost If I try to connect

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-19 Thread Wassim Zaarour
don't understand, the username and password are being supplied and read in clear text and the binding is successful, why the reject ? Wassim C. Zaarour Systems Network Engineer On 4/19/12 3:08 PM, Alan DeKok al...@deployingradius.com wrote: Wassim Zaarour wrote: If I try to connect

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-19 Thread Wassim Zaarour
On 4/19/12 3:31 PM, alan buxey a.l.m.bu...@lboro.ac.uk wrote: Hi, I have read what you mentioned, still can't figure it out, I guess the important part in the debug is: ERROR: No Authenticate method (Auth-Type) found for the request: Rejecting the user yes but we arent mind

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-19 Thread Wassim Zaarour
On 4/19/12 4:18 PM, Alan DeKok al...@deployingradius.com wrote: Wassim Zaarour wrote: Hi Alan, and thanks for your reply, I don't want to paste the output here coz its large, should I attach it or paste here anyways or?? You can follow instructions, or you can be unsubscribed and banned

Re: LDAP-FreeRadius-Cisco Switch-802.1x Fails.

2012-04-19 Thread Wassim Zaarour
Thanks Alan, it worked like a charm!! But it worked using TTLS/PAP, now Windows OS natively supports PEAP, and when I tried it with TTLS/PEAP it didn't authenticate and gave the following debug: I guess from the below what's important is this section . . . [eap] processing type mschapv2

Configuring Freeradius with LDAP

2012-04-18 Thread Wassim Zaarour
Hi List, I have installed freeradius 2.1.12, and it's working well. Now I need to configure it to authenticate with LDAP (Sun Directory Server) but I can't seem to find which file to configure in raddb, I can't find it in radiusd.conf I appreciated any help on this.