Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    FreeRADIUS 3.x package NTLM problem

    Scheduled Pinned Locked Moved pfSense Packages
    13 Posts 6 Posters 4.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      Aeular
      last edited by

      I didn't use 2.0, so can't say this is it for sure, but when setting up 3, I ran into that issue.  I found I had to store passwords as cleartext for it to work, not MD5.  Thats on the 2.4 line though. Hopefully that helps you

      1 Reply Last reply Reply Quote 0
      • G
        Gerard64
        last edited by

        I use NT-Password for most users I also have a test user with Cleartext-Password set. No difference they generate the same error message, I don't use md5. The 2 sites I have are in use I can't use them to test and/or try things. I have no other choice then to stay on pfSense 2.3 with Freeradius 2 for the time being. At the moment I have no idea how to figure this out.

        Thank you for responding.

        1 Reply Last reply Reply Quote 0
        • G
          Gerard64
          last edited by

          Since I couldn't fix the above problem I have setup a external freeradius 2 server so I can uninstall freeradius from pfsense system. To be able to upgrade to the latest pfsense version.
          Now I want to uninstall Freeradius 2 from pfSense 2.3.4 but it isn't showing in the installed packages list. How do I uninstall Freeradius wen it is not showing in the packages manager?
          I don't want any left over packages files etc of freeradius wen i'm going to upgrade pfSense.

          1 Reply Last reply Reply Quote 0
          • GertjanG
            Gertjan
            last edited by

            @Gé:

            ….
            I don't want any left over packages files etc of freeradius wen i'm going to upgrade pfSense.

            Hi,
            Throw out all references to Freeradius in the config.xml

            Then, do a clean install using 2.4.x - import your config, and done.
            (10 minutes max).

            Clean system guaranteed.

            No "help me" PM's please. Use the forum, the community will thank you.
            Edit : and where are the logs ??

            1 Reply Last reply Reply Quote 0
            • G
              Gerard64
              last edited by

              Okay great advice, thanks!

              1 Reply Last reply Reply Quote 0
              • jimpJ
                jimp Rebel Alliance Developer Netgate
                last edited by

                Try again on with FreeRADIUS 3.x package version 0.15.5, this should be fixed now.

                Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 0
                • G
                  Gerard64
                  last edited by

                  Today I upgraded to pfSense 2.4.2-1. I didn't want to install Freeeradius anymore in pfSense since it didn't work anymore for me. But then you posted the problem should be fixed in the latest version. Today I tested it but sadly it is still the same.

                  I will keep the Freeradius 3 setup on pfSense for testing new package versions in the future.
                  Till it is fixed I'm using my other Freeradius 2.

                  1 Reply Last reply Reply Quote 0
                  • Z
                    Zizi
                    last edited by

                    Hi,
                    today I've set up freeradius3 for WPA-EAP, an it is working, but only with "clear text passwords".
                    If I change it to "MD5 Password", I get error "mschap: FAILED: No NT/LM-Password. Cannot perform authentication"

                    Is there any way to use non clear text password storage with working WPA-EAP?

                    1 Reply Last reply Reply Quote 0
                    • G
                      Gerard64
                      last edited by

                      Hi Zizi,

                      I have a freeradius 3 in pfsense and a external freeradius 2 in a vps. The last one works with plain password ánd nthash paswd's.
                      I have a test user with a plain passwd this is not working in fact non of my users can login wen i use the pfsense radius 3 server package. If i use the external freeradius 2 server i installed in a virtual debian system all users work 100% nthash and plan text password are no difference then. I have even md5 test users that do work also.

                      I keep the FR3 package on pfsense on hand so I can test it if and wen there are updates in the hope one day it will work again.

                      1 Reply Last reply Reply Quote 0
                      • A
                        antilog
                        last edited by

                        @Zizi:

                        Hi,
                        today I've set up freeradius3 for WPA-EAP, an it is working, but only with "clear text passwords".
                        If I change it to "MD5 Password", I get error "mschap: FAILED: No NT/LM-Password. Cannot perform authentication"

                        Is there any way to use non clear text password storage with working WPA-EAP?

                        Same here.

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.