Friday, 2013-08-16

*** AccentureDan has quit (Ping timeout: 250 seconds)00:50
*** nowen (~nowen@99-174-93-102.lightspeed.tukrga.sbcglobal.net) has joined #wikid14:50
nowenderp, forgot to start pidgin14:50
*** AccentureDan (0cfa9442@gateway/web/freenode/ip.12.250.148.66) has joined #wikid18:02
AccentureDanhey Nick18:03
AccentureDanso just an update, implemented AD LDS and created a partition, enabled all certs in WiKID along with enabling LDAP...going to be configuring RADIUS shortly and will give you an update18:03
AccentureDanI will need some help on communication and access via the WiKID token as that was an issue the last time18:03
nowenhey - soory19:01
nowenAccentureDan: you still here?19:01
nowenping AccentureDan19:34
AccentureDanhahaha19:50
AccentureDansorry19:50
AccentureDani am back19:50
AccentureDanbeen running around again19:50
nowenwhat's your status?19:59
AccentureDanokay created a domain20:01
AccentureDanenabled RADIUS and LDAP20:01
AccentureDandownloaded the token client to a member server on my domain20:01
nowenI would not enable ldap20:01
nowenit will just use up memory20:01
nowenbut you can disable it later20:01
nowenwhat's your domain identifier?20:01
AccentureDanthe name?20:02
nowenthe 12 digit id20:02
AccentureDanohhhh20:03
AccentureDaninternal...192168ifconfig20:03
AccentureDanmy bad20:03
nowenah20:03
AccentureDanstupid screen20:03
AccentureDanLOL20:03
nowencan you register a token?20:03
AccentureDani meant to ask you about the domain identifier20:04
AccentureDanis that the IP of the WiKID server?20:05
nowenyes, so the tokens can find it20:05
nowenfor production, you will want to use the external ip20:05
AccentureDan19216800113120:05
AccentureDanahhh i see20:05
AccentureDanokay20:05
nowenso 192.168.1.13120:05
AccentureDanso you essentially want the WiKID server facing towards the Internet?20:06
nowenthe tokens need to communicate with the server.  you can NAT it and you can proxy the requests20:06
nowenso, can you register a token?20:07
AccentureDanwell just so i can give you some background...I have a desktop set up with VMWare Workstation...I have a Win2k12 set up as a DC and another member server...then I have an Oracle Enterprise Linux OS running with WiKID20:07
AccentureDanone sec20:07
nowenI do want to get out of here soonish - tgif and all ;-)20:08
AccentureDannahhhh man dont worry about it20:14
AccentureDanits not immediate20:14
AccentureDansorry getting pulled away by the client20:14
AccentureDani had to change something in the domain20:15
AccentureDanlemme see if i can auth20:15
nowenwhat are you trying to auth into?20:15
AccentureDanso with the token client20:15
AccentureDanshould i put the server code from the domain in there?20:15
nowenyep20:16
AccentureDani set the server code to the WiKID server20:16
nowenyes20:16
AccentureDanhmmmm c ould not obtain config20:18
AccentureDanone sec20:18
nowencan you browse the WiKIDAdmin from that machine?20:18
AccentureDanlemme check here real quick20:22
AccentureDandont think i have samba installed20:23
AccentureDanwoops20:23
AccentureDannot what i meant20:23
AccentureDanmy bad20:23
nowenyou don't need samba or anything to get the token talking to wikid, except a route over port 8020:24
AccentureDangotcha20:25
AccentureDancant browse it20:25
AccentureDancould not connect20:25
AccentureDancan ping it though20:26
AccentureDanokay got it20:27
AccentureDanSELinux and firewall..,.ugh20:27
AccentureDanbrb20:28
AccentureDanok it worked20:28
AccentureDanWOOT20:28
nowensweet20:35
nowenok - how will you test radius?20:35
AccentureDanwell that is the fun part my friend20:36
AccentureDani had a VPN solution set up but i need to go and reverify20:36
AccentureDanwhat is the most common?20:36
noweni use http://www.iea-software.com/products/radlogin4.cfm20:37
nowenyou can also play with the API using example.jsp: http://www.wikidsystems.com/support/wikid-support-center/troubleshooting-faq/how-can-i-test-if-the-server-is-working-correctly20:38
nowenand  http://www.wikidsystems.com/support/wikid-support-center/manual/how-to-install-the-wikid-strong-authentication-server/installing-the-wikid-strong-authentication-server-enterprise-edition-page-520:39
nowenwhen you are ready to test external, you can just create a new domain using the external IP20:43
nowenbut I might head out - are you in a good place/20:45
nowen?20:45
nowenok - I'm outta here - AccentureDan email me if you need me.20:58
*** AccentureDan has quit (Ping timeout: 250 seconds)22:29

Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!