Univention Bugzilla – Full Text Bug Listing |
Summary: | RADIUS NTLM auth fails with Cisco APs due to Station ID format | ||
---|---|---|---|
Product: | UCS | Reporter: | Moritz Bunkus <m.bunkus> |
Component: | Radius | Assignee: | Sönke Schwardt-Krummrich <schwardt> |
Status: | CLOSED FIXED | QA Contact: | Florian Best <best> |
Severity: | normal | ||
Priority: | P5 | CC: | best, gohmann, grandjean, michelsmidt, schwardt |
Version: | UCS 4.1 | Flags: | best:
Patch_Available+
|
Target Milestone: | UCS 4.2-2-errata | ||
Hardware: | Other | ||
OS: | Linux | ||
What kind of report is it?: | Bug Report | What type of bug is this?: | 5: Major Usability: Impairs usability in key scenarios |
Who will be affected by this bug?: | 2: Will only affect a few installed domains | How will those affected feel about the bug?: | 3: A User would likely not purchase the product |
User Pain: | 0.171 | Enterprise Customer affected?: | |
School Customer affected?: | ISV affected?: | ||
Waiting Support: | Flags outvoted (downgraded) after PO Review: | ||
Ticket number: | Bug group (optional): | External feedback | |
Max CVSS v3 score: | |||
Bug Depends on: | |||
Bug Blocks: | 44916, 44917 | ||
Attachments: | remove non hex digits from station ID via regex |
Description
Moritz Bunkus
2016-10-20 15:17:48 CEST
The fix is already part of UCS@school ucs-school-ntlm-auth but not for UCS univention-ntlm-auth. We should port the changes to UCS. Prepared in feature branch sschwardt/42722/422/univention-radius (In reply to Sönke Schwardt-Krummrich from comment #2) > Prepared in feature branch sschwardt/42722/422/univention-radius LGTM, I added 2 comments. Otherwise you can merge. All the logging stuff we don't want to add here? univention-radius.yaml: 2a156ce6a7ba | Bug #42722: Merge branch 'sschwardt/42722/422/univention-radius' into 4.2-2 ba2a0e401edb | Bug #42722: add advisory univention-radius (4.0.0-5): 2a156ce6a7ba | Bug #42722: Merge branch 'sschwardt/42722/422/univention-radius' into 4.2-2 0bde306e6f2a | Bug #42722: add changelog entry 05feb73b55fd | Bug #42722: use empty string as default - in accordance with UCS@school variant 1ec6edfc72a3 | Bug #42722: remove all non-hexadecimal characters from station id Package: univention-radius Version: 4.0.0-5A~4.2.0.201711021538 Branch: ucs_4.2-0 Scope: errata4.2-2 OK: station id in CISCO AP format /usr/bin/univention-radius-ntlm-auth --request-nt-key --username=Administrator --challenge=00 --nt-response=00 --station-id=1234.5678.09ab Logon failure (0xc000006d) OK: empty station id /usr/bin/univention-radius-ntlm-auth --request-nt-key --username=Administrator --challenge=00 --nt-response=00 Logon failure (0xc000006d) OK: YAML |