<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=3&amp;t=869" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2012-10-15T15:22:37+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=3&amp;t=869</id>
<entry>
<author><name><![CDATA[samir]]></name></author>
<updated>2012-10-15T15:22:37+01:00</updated>
<published>2012-10-15T15:22:37+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=869&amp;p=3320#p3320</id>
<link href="https://forum.yubico.com/viewtopic.php?t=869&amp;p=3320#p3320"/>
<title type="html"><![CDATA[Re: Problem to verify radius settings]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=869&amp;p=3320#p3320"><![CDATA[
Hello,<br /><br />It seems that you have not provided the right shared secret to the radtest.<br /><br />Please make sure your clients.conf should have the shared secret entry as per your radtest.<br /><br />Eg.<br />client 127.0.0.1 {<br />  secret    = <span style="color: #FF0000"><strong>xxxxx</strong></span><br />  shortname = 1_127.0.0.1<br />}<br /><br />If you are still facing the same issue, please write to &quot;support@yubico.com&quot; along with error screenshot and log details.<br /><br />Thanks and best regards,<br />Samir.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=1076">samir</a> — Mon Oct 15, 2012 3:22 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Pete]]></name></author>
<updated>2012-10-13T18:07:40+01:00</updated>
<published>2012-10-13T18:07:40+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=869&amp;p=3317#p3317</id>
<link href="https://forum.yubico.com/viewtopic.php?t=869&amp;p=3317#p3317"/>
<title type="html"><![CDATA[Problem to verify radius settings]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=869&amp;p=3317#p3317"><![CDATA[
I have done the setup according to the instruction for YubiRADIUS Virtual Appliance version 3.5.3 but have a problem to verify my radius-settings. I can validate OTP and ping localhost from the YubiRADIUS server.<br /><br />When i try to verify my settings withh RadTest I get the following result:<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">RadTest Response:  Failed!<br />rad_verify: Received Access-Reject packet from home server 127.0.0.1 port 1812 with invalid signature!  (Shared secret is incorrect.)<br />rad_verify: Received Access-Reject packet from home server 127.0.0.1 port 1812 with invalid signature!  (Shared secret is incorrect.)<br />rad_verify: Received Access-Reject packet from home server 127.0.0.1 port 1812 with invalid signature!  (Shared secret is incorrect.)<br />radclient: no response from server for ID 139 socket 3<br />Sending Access-Request of id 139 to 127.0.0.1 port 1812<br />   User-Name = &quot;xxxx.yyy&quot;<br />   User-Password = &quot;XXXXXXXyyyyyyyyyyyyyyyyyyyyyyyyyyyy&quot;<br />   NAS-IP-Address = 127.0.0.1<br />   NAS-Port = 0<br />rad_recv: Access-Reject packet from host 127.0.0.1 port 1812, id=139, length=20<br />Sending Access-Request of id 139 to 127.0.0.1 port 1812<br />   User-Name = &quot;xxxx.yyy&quot;<br />   User-Password = &quot;XXXXXXXyyyyyyyyyyyyyyyyyyyyyyyyyyyy&quot;<br />   NAS-IP-Address = 127.0.0.1<br />   NAS-Port = 0<br />rad_recv: Access-Reject packet from host 127.0.0.1 port 1812, id=139, length=20<br />Sending Access-Request of id 139 to 127.0.0.1 port 1812<br />   User-Name = &quot;xxxx.yyy&quot;<br />   User-Password = &quot;XXXXXXXyyyyyyyyyyyyyyyyyyyyyyyyyyyy&quot;<br />   NAS-IP-Address = 127.0.0.1<br />   NAS-Port = 0<br />rad_recv: Access-Reject packet from host 127.0.0.1 port 1812, id=139, length=20</div><br />I have set my shared secret for the following networks, 127.0.0.1 network was for debugging purposes:<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">127.0.0.1/24   2012-10-13 18:29:27   <br />192.168.1.0/24   2012-10-13 18:18:04</div><br />The freeradius log is almost empty, I have checked that I have logging enabled.<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">/var/log/freeradius/radius.log<br />Sat Oct 13 18:29:27 2012 : Info: Exiting normally.<br />Sat Oct 13 18:29:27 2012 : Info: Loaded virtual server inner-tunnel<br />Sat Oct 13 18:29:27 2012 : Info: Loaded virtual server &lt;default&gt;<br />Sat Oct 13 18:29:27 2012 : Info: Ready to process requests.</div><br />The three logfiles yk*.log contain no or no usable information.<br /><br />I have also tried with an external radius client on the 192.168.1.0/24 network with the following result:<br /><div class="codetitle"><b>Code:</b></div><div class="codecontent">RADIUS access denied</div><p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2178">Pete</a> — Sat Oct 13, 2012 6:07 pm</p><hr />
]]></content>
</entry>
</feed>