[afnog] Chap-password to User-password

Carl aniams aniamss at gmail.com
Tue Aug 21 15:54:03 UTC 2007


thanks for the concern it has been solved
i'm using a uam portal that was unknowingly to me sending my passwords in
chap



2007/8/21, Kabagambe Kenneth <kabagak at gmail.com>:
>
> Control Panel->Network Connections -> (Select your connection)
> ->Properties->Security->Advanced
>
> Select the protocol you want to send to the Access Server
>
> On 8/20/07, Carl aniams <aniamss at gmail.com> wrote:
> > i have radius connected to all my tables in the database
> > and even the username is recongnized as been in the database.
> >
> > i went further in my research and it seems it's my client that is
> sending
> > CHAP-password
> > since he send the access-request message. normaly it is in user-name:
> and
> > password: user-password for pap or if chap is used in Chap-password
> format
> > (hope i'm not wrong)
> > now my problem is how to change the password attributes of my client so
> that
> > in the access-request message already there is no chap challenge.
> >
> >
> >
> > 2007/8/20, Eddy Kayihura M. <eddy at terracom.rw>:
> > > Hi Carl,
> > >
> > > When I read your explanation below, I am wondering if you are sure
> > > radius is checking within the mysql database
> > > Do you have some "mysql" messages in the debug mode? (select etc ...)
> > >
> > > I know I am not talking about the CHAP issue (don't know much about
> it)
> > >
> > > This link has been helpful for me in the past:
> > > http://wiki.freeradius.org/SQL_HOWTO
> > > (and http://www.frontios.com/freeradius.html (which is
> > old as stated on
> > > the page) )
> > >
> > > regards
> > >
> > > Eddy
> > >
> > >
> > > Carl aniams wrote:
> > > >
> > > > Hi all
> > > >
> > > > I installed freeradius 1.1.6 with mysql for storing users login.
> > > > i created some users  through dialup admin page and had their
> password
> > > > stored in User-password attribute.(i checked in the database select
> > > > from radcheck)
> > > >
> > > > when i fire up radius in debug i notice that there is a CHAP
> challenge
> > > > and the password is in a CHAP-password format rejecting then access
> > > > with message
> > > > auth: local
> > > > auth: user supplied password does not match local user-password
> > > >
> > > > when in my radiusd.conf authorize section i uncomment chap
> > > > i have
> > > > auth: type CHAP
> > > > rlm_chap:login attempt by username with CHAP password
> > > > rlm_chap: using clear text password 'mypass' for user username
> > > > authentication
> > > > rlm_chap: passxord check failed
> > > >
> > > > I would like to stop the put my password in User-password rather
> than
> > > > CHAP-password, but don't know how it should be done.
> > > >
> > > > please a help
> > > > --
> > > > -_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
> > > >
> > > > ANIAMBOSSOU Carl
> > > > NIAMS TECHNOLOGIES
> > > > tel: +229 90 04 08 58   +229 97 48 01 33
> > > > COTONOU
> > > > REPUBLIC OF BENIN
> > > > WEST AFRICA
> > > >
> > ------------------------------------------------------------------------
> > > >
> > > > _______________________________________________
> > > > afnog mailing list
> > > > http://afnog.org/mailman/listinfo/afnog
> > >
> > >
> >
> >
> >
> > --
> > -_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_
> >
> >
> > ANIAMBOSSOU Carl
> > NIAMS TECHNOLOGIES
> > tel: +229 90 04 08 58   +229 97 48 01 33
> > COTONOU
> > REPUBLIC OF BENIN
> > WEST AFRICA
> > _______________________________________________
> > afnog mailing list
> > http://afnog.org/mailman/listinfo/afnog
> >
>
>
> --
> Kenneth
>



-- 
-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_-_

ANIAMBOSSOU Carl
NIAMS TECHNOLOGIES
tel: +229 90 04 08 58   +229 97 48 01 33
COTONOU
REPUBLIC OF BENIN
WEST AFRICA
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://afnog.org/pipermail/afnog/attachments/20070821/7150ea58/attachment.html 


More information about the afnog mailing list