<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en-gb">
<link rel="self" type="application/atom+xml" href="https://forum.yubico.com/feed.php?f=29&amp;t=836" />

<title>Yubico Forum</title>
<subtitle>...visit our web-store at</subtitle>
<link href="https://forum.yubico.com/index.php" />
<updated>2013-02-22T16:15:09+01:00</updated>

<author><name><![CDATA[Yubico Forum]]></name></author>
<id>https://forum.yubico.com/feed.php?f=29&amp;t=836</id>
<entry>
<author><name><![CDATA[rmaudsley]]></name></author>
<updated>2013-02-22T16:15:09+01:00</updated>
<published>2013-02-22T16:15:09+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3626#p3626</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3626#p3626"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3626#p3626"><![CDATA[
Neal...I saw your post before, the SA does not use ScreenOS..<br /><br />thanks for the input<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2314">rmaudsley</a> — Fri Feb 22, 2013 4:15 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[Neal]]></name></author>
<updated>2013-02-22T14:29:39+01:00</updated>
<published>2013-02-22T14:29:39+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3624#p3624</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3624#p3624"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3624#p3624"><![CDATA[
Hi rmaudsley,<br /><br />I'm not the original poster however I wrote a guide to getting a Juniper Netscreen SSG-140 working with YubiRadius a few months ago. The SSG-140 uses ScreenOS as its operating system, I'm not sure what the SA2500 uses but in case there is any overlap you might be able to use some of it.<br /><br /><!-- m --><a class="postlink" href="http://www.digitalllama.net/2012/03/netscreen-ssg140-dual-factor-auth-with.html">http://www.digitalllama.net/2012/03/net ... -with.html</a><!-- m --><br /><br />Regards,<br />Neal.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=299">Neal</a> — Fri Feb 22, 2013 2:29 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[rmaudsley]]></name></author>
<updated>2013-02-20T19:49:02+01:00</updated>
<published>2013-02-20T19:49:02+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3617#p3617</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3617#p3617"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3617#p3617"><![CDATA[
Any way you could post some detailed info on how you configured the Juniper SA2500 ?<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2314">rmaudsley</a> — Wed Feb 20, 2013 7:49 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[AutoStatic]]></name></author>
<updated>2012-08-15T12:41:12+01:00</updated>
<published>2012-08-15T12:41:12+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3232#p3232</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3232#p3232"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3232#p3232"><![CDATA[
Hello kevbo, what kind of Juniper VPN device are you using and how did you set it up? I'm trying to set up a similar configuration, but then with an LDAP server. I can authenticate against LDAP and YubiRADIUS just fine but I just don't manage to get the Juniper device we're using (an SA2500) to send the right data or to have the YubiRADIUS server understand the data that gets sent. Basically I'm having this issue: <!-- m --><a class="postlink" href="http://forums.juniper.net/t5/SSL-VPN/Yubikey-for-Two-Factor/m-p/125709/highlight/true#M13337">http://forums.juniper.net/t5/SSL-VPN/Yu ... rue#M13337</a><!-- m --><br />So if I enter the YubiKey OTP as the secondary password it doesn't work. If I prepend that OTP with the LDAP password it works. But maybe I'm overseeing something in the Juniper config or I've simply set it up wrong.<br /><br />Thanks in advance!<br /><br />Jeremy<br /><br />Edit: I've decided to keep it this way, so LDAP password + OTP, as this is apparently the standard way to do it.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2124">AutoStatic</a> — Wed Aug 15, 2012 12:41 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[kevbo]]></name></author>
<updated>2012-08-09T14:55:59+01:00</updated>
<published>2012-08-09T14:55:59+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3206#p3206</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3206#p3206"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3206#p3206"><![CDATA[
Thanks...I went ahead and set up a YubiRadius server, and it is working as described.<br /><br />I'm having some trouble with having two units in a synchronization group where if one fails, the other quits working, but that's a different question and in a different thread.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2105">kevbo</a> — Thu Aug 09, 2012 2:55 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[samir]]></name></author>
<updated>2012-07-30T14:51:47+01:00</updated>
<published>2012-07-30T14:51:47+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3185#p3185</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3185#p3185"/>
<title type="html"><![CDATA[Re: Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3185#p3185"><![CDATA[
Hello,<br /><br />YubiRADIUS VA use AD/LDAP for the single factor authentication (i.e username and passowrd). YubiRADIUS import users and groups information from AD/LDAP and there is no password information stored on YubiRADIUS DB. The username and password is getting authenticated with live AD/LDAP for every authentication. For the two factor authentication using YubiRADIUS the credentials like username, password and OTP can be provided. YubiRADIUS then first authenticate OTP with respective OTP validation server and sends username and password to AD/LDAP for authentication.<br /><br />Hope this helps!<br /><br />Thanks and best regards,<br />Samir.<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=1076">samir</a> — Mon Jul 30, 2012 2:51 pm</p><hr />
]]></content>
</entry>
<entry>
<author><name><![CDATA[kevbo]]></name></author>
<updated>2012-07-25T21:53:08+01:00</updated>
<published>2012-07-25T21:53:08+01:00</published>
<id>https://forum.yubico.com/viewtopic.php?t=836&amp;p=3174#p3174</id>
<link href="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3174#p3174"/>
<title type="html"><![CDATA[Question about YubiRADIUS: &quot;copy&quot; users?]]></title>

<content type="html" xml:base="https://forum.yubico.com/viewtopic.php?t=836&amp;p=3174#p3174"><![CDATA[
I need a RADIUS server for a Juniper VPN to authenticate users to.  I'd like it to verify username/password with our AD domain, along with using a Yubikey OTP.<br /><br />It looks like YubiRADIUS might be able to do what I want.<br /><br />Reading through its documentation, the one thing that confuses me is that it seems to want to keep a copy of user data from the AD in its own LDAP server, rather than live query.  Is that the case?  Or can it work in a mode where it is live querying an Active Directory?<br /><br />Thanks,<br /><br />Kevin<p>Statistics: Posted by <a href="https://forum.yubico.com/memberlist.php?mode=viewprofile&amp;u=2105">kevbo</a> — Wed Jul 25, 2012 9:53 pm</p><hr />
]]></content>
</entry>
</feed>