RE: [Emerald] Repost: Proxy Radius Help!

Dale E. Reed Jr. ( (no email) )
Fri, 14 Jul 2000 11:26:25 -0700

> How can I tell if RADIUSNT (version 2.5.206) is actually sending to a
> client's RADIUS server (in a proxy setup)? I think I've got
> everything setup
> correctly, but when I try to authenticate I get errors which lead me to
> believe RADIUS isn't querying the client's RADIUS, but instead it is
> querying our RADIUSNT server.

There will be a line in the debug like "Sending Proxy request to...."

> I have placed the client's RADIUS server IP address and shared secret in
> EmeraldAdmin's Roam Servers table (Strip Domain and Treat As Local are
> unchecked), and added their domain to Roam Domains, which points to the
> corresponding Roam Server entry.

But did you enable Proxy auth/acct in the RadiusNT admin and restart
RadiusNT? The below is NOT proxying the request.

>
> Here's the output from -x15 debug (I have changed the username,
> password and
> NAS IP address):
>
> radrecv: Request from host cdf47915 code=1, id=221, length=205
> User-Name = "testaccount@domain.com"
> Password = "<removed for privacy>"
> NAS-Identifier = xxx.xxx.xxx.xxx
> NAS-Port = 1321
> Acct-Session-Id = "testaccount@domain.com1"
> Interface_Index = 0
> Received unknown attribute 39049, vendor 429
> User-Service = Login-User
> Chasis-Call-Slot = 56
> Chasis-Call-Span = 1
> Chasis-Call-Channel = 1
> Connect-Speed = 300
> Caller-Id = ""
> NAS-Port-DNIS = ""
> NAS-Port-Type = Virtual
> rad_authenticate_ODBC()

If it was a proxy, you wouldn't have a db auth (as above), you'd
see the "sending proxy..." line.

Dale

For more information about this list (including removal) go to:
http://www.iea-software.com/support/maillists/liststart