| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Hi, I'm trying to setup R61 to authenticate users through RADIUS. I followed all the instructions laid out in other threads but i'm still having some troubles. I'm using an RSA SecurID box running Steel Belted Radius. Authentication works if the user i'm trying to login with is defined both on the RSA box and on the SmartDashboard. However, when I create a generic* profile, it won't let me in anymore. I can see an actual Request being sent to the RADIUS server, and the RADIUS marks it as "Accepted"...so it's definitely getting the correct user info. But then all I get back at the SmartDashboard login is: "Authentication to Server 'x.x.x.x' failed." Are there any RADIUS attributes I should be returning maybe? Thanks for any help. |
| |||
| Is your radius server returning any non-standard attributes ? I found I needed to ignore a non-standard attribute that was required by my Telco's dial-in service that used our radius server for me it was radus attribute 26 Ascend-Framed-IP I set it under the global properties -> smartdashboard customisation -> advanced button under the firewall-1 -> authentication -> radius section there is an option radius_ignore (i needed attribute 26) cheers Sean |
![]() |
| Thread Tools | |
| Display Modes | |
| |