Message-ID: <003201c1e003$76adcd30$326468d8@fantasy> From: "Kurt Schafer" <firstname.lastname@example.org> Subject: Re: [Emerald] Default Grace Period (Days) Date: Tue, 9 Apr 2002 16:16:42 -0400
Tried the password replace option and gibberish passwords were being
inserted. Judging from the console of radius in -x6 mode, the gibberish is
in fact coming from the NAS. In some cases, the user supplied password is
*CHAP* (MaxTNT NAS)
Usually I'd suspect the NAS secret in the Radius config, but there are tons
of users authenticating properly so I'm at a loss.
Any ideas ?
----- Original Message -----
From: "Dale E. Reed Jr." <email@example.com>
Sent: Tuesday, April 09, 2002 3:22 PM
Subject: Re: [Emerald] Default Grace Period (Days)
> > Can you refresh my memory on the 'Password Replace' option in RadiusNT ?
> > seem to recall something about needing to set the password to "ANY" and
> > Radius will update those SubAccounts with the user provided password the
> > next time they log in. Is this the procedure ? I've just scanned through
> > DB and it appears that we've got about 1,000 acounts (out of 10,000)
> > have a NULL password. I remember when we undertook our migration from a
> > based passwd file to Emerald 2.2 way back when, this 'Password Replace'
> > option was a godsend.
> Set the User's password to one of the external schemas (like WINNT, ANY,
> etc) and enable password replace. After a successfull authentication, it
> will put their
> entered password in to replace the external password.
> The Advanced section in the RadiusNT Admin (2.5-4) has the Replace
> option in it.
> This is a user supported list. If you require assistance from IEA
> Support Engineers, please check out our Support resources at
> For more information about this list (including removal) go to: