Problem getting ocserv work with Freeradius

Nikos Mavrogiannopoulos nmav at gnutls.org
Sat Dec 27 01:18:09 PST 2014


On Fri, 2014-12-26 at 21:42 +0200, Marko wrote:
> Hi there,
> 
> I have set up Freeradius+daloradius+MySQL+PHP+PPTP VPN server+Ocserv.
> 
> There is no problem using Anyconnect to connect to VPN when Ocserv
> uses password authentication. I'm sure Freeradius works fine, because
> it works for PPTP VPN authentication.
> 
> I have been trying to get PAM radius authentication work with Ocserv,
> syslog shows the following error:

> Dec 26 13:39:34 tikkaatvpn ocserv[577]: pam_radius_auth: DEBUG:
> getservbyname(radius, udp) returned -1216373696.
> Dec 26 13:39:34 tikkaatvpn ocserv[577]: pam_radius_auth: Got RADIUS
> response code 2
> Dec 26 13:39:34 tikkaatvpn ocserv[577]: pam_radius_auth:
> authentication succeeded
> Dec 26 13:39:34 tikkaatvpn ocserv[577]: sec-mod: error in password
> given in auth cont for user 'vpn1'

The last message is printed if PAM authentication or accounting fails. 

If you are only interested for radius through pam though you may want to
try the version of ocserv in git which directly supports radius.

regards,
Nikos





More information about the openconnect-devel mailing list