Results 1 to 8 of 8

Thread: Unable to get privileges in freeradius server with Quidway AR 28-09 router

  1. #1
    Join Date
    Dec 2011
    Posts
    23

    Unable to get privileges in freeradius server with Quidway AR 28-09 router

    Hi, i have recently configured Quidway AR 28-09 router with all radius lines. And when i was logging into the router with username and password configured in the radius server, i was not able to get the privileges that i have made, in other words i would say they doesn't work the way i have expected.

    For example I am sending the attribute "Huawei-Exec-Privilege" := 1 and :=3 but as a result they doesn't work at all….along with this if i lose connectivity with the radius server somehow so after that I cannot make use of the local user, and I don´t know why exactly, any suggestion for resolving this will be appreciated.

  2. #2
    Join Date
    Jul 2011
    Posts
    364

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    First of all will you please let me know What is the type of RADIUS server you are using ? concerning that i could suggest you the solution for the same.

  3. #3
    Join Date
    Jul 2011
    Posts
    330

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    For example I am sending the attribute "Huawei-Exec-Privilege" := 1 and :=3 but as a result they doesn't work at all….along with this if i lose connectivity with the radius server somehow so after that I cannot make use of the local user, and I don´t know why exactly, any suggestion for resolving this will be appreciated.
    See first, I would like to let you know as the above mentioned issue like you are not able to make use of local server, so let me tell you as this issue should happen because of use " authentication-mode scheme domain system " beneath the " user-interface vty 0 4 " which actually force the the router to pursue the domain and within the domain all commands for RADIUS server only.

    Thus according to me for resolving this you need to modify the VTY as per the below mentioned values.

    user-interface vty 0
    authentication-mode scheme domain sustem
    User-interface vty 1 4
    authentication-mode local.


    Once you completed with the same so, you have one vty 0 for radius test and vty from 1 to 4 for local user login.

  4. #4
    Join Date
    Jul 2011
    Posts
    355

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    I don’t know exactly which kind of parameters you have set but still according to me you should first make sure you have to edit the parameters for authorization is ht eRADIUS server. And along with this the second this that you have to verify is like ensure you have to add the authorization commands to the router that you have entered or not? because the router will know that there is authorization server and rules has to take will be concerned about it .

  5. #5
    Join Date
    Jul 2011
    Posts
    419

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    well, if you are still pursuing the same problem then it might be possible like the configuration that you have done on the router for the server will not be correct thus simply to resolve this it would be better if you simply reconfigure it. See over here let me tell you as if you are not aware about the configuring the router settings then you can simply make use of the manual given to you, or else it would be better to approach and good engineer for the same rather than configuring on your own.

    In addition, as far as configuring the router is concerned let me suggest you as you should not try to overwrite the settings on the one that you have previously configured rather it would be better to reset the setting first and then configure it.

  6. #6
    Join Date
    Dec 2011
    Posts
    23

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    I don’t know exactly which kind of parameters you have set but still according to me you should first make sure you have to edit the parameters for authorization is ht eRADIUS server. And along with this the second this that you have to verify is like ensure you have to add the authorization commands to the router that you have entered or not? because the router will know that there is authorization server and rules has to take will be concerned about it .

    Hey thanks for the suggestion as i have fixed my first issue after verifying all this thing and see i have mentioned it properly by means of steps.

    Authentication is successful.

    Accounting is succesful.

    And when it come to the Authorization, while I log in the router, the freeradius send "Huawei-Exec-Privilege" variable with 1 for user privileges and 3 for super privileges, but for all time i log in with user privileges. And you must have gotten as I am having problem only with the authorization. Any more suggestion left? And thanks for the above one.

  7. #7
    Join Date
    Jul 2011
    Posts
    265

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    ok, that’s fine but still can you please let us know what configuration you have done on your router so that i could assist you with the settings and the value for each parameter.

  8. #8
    Join Date
    Aug 2011
    Posts
    305

    Re: Unable to get privileges in freeradius server with Quidway AR 28-09 router

    I am not sure whether there is some problem with the router settings that you have done or with the radious server, but still according to me if you are sure about the settings then why don’t you try to reconfigure the radious server settings? Because see if there will be some problem with your existing setting then it will be resolved for sure. In fact if you wanted to know further information regarding settings you can simply visit to their official website.

Similar Threads

  1. How to reset password on HUAWEI Quidway Eudemon 500 Firewall
    By ThePain in forum Hardware Peripherals
    Replies: 3
    Last Post: 04-01-2014, 05:48 PM
  2. Unable to setup RT-N56U router on HTTP server
    By Fitroy in forum Portable Devices
    Replies: 5
    Last Post: 06-10-2011, 05:57 AM
  3. Unable to communicate with Primary DNS Server using Linksys E3000 Router
    By intoxicating in forum Networking & Security
    Replies: 4
    Last Post: 03-02-2011, 11:57 AM
  4. How to setup FTP server behind Router?
    By Eleazar in forum Networking & Security
    Replies: 5
    Last Post: 13-11-2010, 08:24 AM
  5. Replies: 5
    Last Post: 13-08-2010, 01:40 PM

Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
Page generated in 1,714,165,215.27248 seconds with 17 queries