*** proactis (bc5fce57@gateway/web/freenode/ip.188.95.206.87) has joined #wikid | 11:21 | |
proactis | hi, question for you. Is it possible to import users from our active directory into the radius server | 11:22 |
---|---|---|
*** proactis has quit (Quit: Page closed) | 11:41 | |
*** nowen (~nowen@50-194-249-125-static.hfc.comcastbusiness.net) has joined #wikid | 13:23 | |
*** nowen has quit (Ping timeout: 264 seconds) | 13:27 | |
*** nowen (~nowen@50-194-249-125-static.hfc.comcastbusiness.net) has joined #wikid | 13:42 | |
*** bgeorge_ (41739342@gateway/web/freenode/ip.65.115.147.66) has joined #wikid | 15:51 | |
bgeorge_ | Good morning! | 15:51 |
nowen | morning! | 15:51 |
bgeorge_ | I just came back to let you know I solved my issue. | 15:52 |
nowen | what was the solution? | 15:52 |
bgeorge_ | I'm guessing you remember the problem? | 15:52 |
nowen | nps, right? | 15:53 |
bgeorge_ | Yup | 15:53 |
bgeorge_ | I had 3 polices configured in connection request, with the route to wicked in the first processing order | 15:53 |
bgeorge_ | but the second policy's source was configured as "Remote Access Server (VPN-Dial up)" | 15:54 |
bgeorge_ | i then learned if a source type on a policy matches, it skips the processing order, and does not evaluate "unspecified" policys | 15:55 |
nowen | ok - so, you can only have one policy that matches the source? | 15:56 |
bgeorge_ | Yes, or set them both the Remote Access Server, I'm guessing. | 15:57 |
bgeorge_ | more info here http://technet.microsoft.com/en-us/library/dd125305(v=ws.10).aspx | 15:57 |
nowen | awesome, thanks for the link | 15:59 |
nowen | what's next? | 15:59 |
bgeorge_ | booting the wikid server up now, its already configured. | 15:59 |
bgeorge_ | Getting "The remote RADIUS (Remote Authentication Dial-In User Service) server did not process the authentication request." on the nps | 16:02 |
nowen | check the WiKIDAdmin logs | 16:02 |
nowen | you set up NPS as a network client right? | 16:03 |
bgeorge_ | yes | 16:04 |
nowen | http://www.wikidsystems.com/support/wikid-support-center/troubleshooting-faq/how-can-i-set-radius-logging-to-debug-how-can-i-see-if-wikid-is-getting-the-radius-requests | 16:05 |
nowen | you can set the server to debug for radius to get more info | 16:05 |
bgeorge_ | im in it now | 16:05 |
nowen | NPS is set for port 1812? | 16:05 |
bgeorge_ | yes | 16:05 |
nowen | what version is this? | 16:05 |
nowen | of WiKID, that is | 16:05 |
bgeorge_ | getting <7> Access-Challenge(11) LEN=330 172.16.2.19:59428 Access-Request by bgeorge resulted in Access-Challenge. | 16:06 |
bgeorge_ | <8> Access-Request(1) LEN=331 172.16.2.19:59428 Access-Request by bgeorge Failed: AccessRejectException: Unknown EAP authentication type requested: NAK[3] | 16:06 |
nowen | huh | 16:06 |
nowen | what protocol did you specify? | 16:06 |
bgeorge_ | wait, might have it | 16:06 |
*** bgeorge__ (41739342@gateway/web/freenode/ip.65.115.147.66) has joined #wikid | 16:07 | |
bgeorge__ | I'm back, it worked! | 16:08 |
*** bgeorge_ has quit (Ping timeout: 245 seconds) | 16:11 | |
nowen | awesome | 16:12 |
nowen | what was it? | 16:12 |
bgeorge__ | I made too many changes to local vpn client, just deleted it and started from scratch | 16:12 |
bgeorge__ | other than that, it was the policy order. | 16:13 |
bgeorge__ | Thanks for your help, I'm off to test more. | 16:20 |
nowen | ok. let me know what you need! | 16:20 |
*** bgeorge__ has quit (Ping timeout: 245 seconds) | 16:24 | |
*** nowen has quit (Quit: Leaving.) | 23:00 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!