Package: freeradius-dialupadmin
Version: 1.1.3-3
Severity: normal

Dialupadmin stores passwords in "crypt" form by default:
general_encryption_method: crypt

but then advertises the passwords as cleartext:
sql_password_attribute: User-Password

(both lines are in /etc/freeradius-dialupadmin/admin.conf file)

Freeradius can't authenticate users added by dialupadmin, because
it takes crypt'd passwords for cleartext ones. To fix this, either
general_encryption_method should be switched to "clear" or
sql_password_attribute should be set to Crypt-Password.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/dash
Kernel: Linux 2.6.18-5-686
Locale: LANG=cs_CZ.UTF-8, LC_CTYPE=cs_CZ.UTF-8 (charmap=UTF-8)

Versions of packages freeradius-dialupadmin depends on:
ii  php4                     6:4.4.4-8+etch4 server-side, HTML-embedded scripti

Versions of packages freeradius-dialupadmin recommends:
ii  perl                        5.8.8-7etch1 Larry Wall's Practical Extraction 

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to