Hi Ian,
We're running IAS on a Windows 2003 system and I can confirm that for both successful and unsuccessful RADIUS requests we are logging the username as the second field in the IAS log files. This matches up with the username logged in the system event log.
Regards
Simon
-----Original Message-----
From: JANET Roaming Service [mailto:[log in to unmask]] On Behalf Of I E Alder
Sent: 23 June 2009 14:06
To: [log in to unmask]
Subject: MS IAS logging empty username for successful JRS proxied authentication requests
Hello all
I am running IAS as a radius server for JRS.
For visitors to my site, successful radius authentications (ie those proxied thru to JANET) are logged by the server event log, and the IAS log.
**** However, the username in the IAS log is empty (second field in the comma delimited log file is empty). ****
The username is in the event log, so the machine does know the username.
For failed proxied auth requests, the username is in the IAS logfile and the event log.
For all radius accounting, the username appears in the IAS logfile correctly.
For local 802.1x authentication against our active directory, the logging is OK.
So, its just successful auth requests that are proxied thru to the JANET radius that do not contain the username in my IAS log.
Has anyone else seen this when using MS-IAS?
Thanks in advance.
Ian Alder
Newcastle University
--
Disclaimer: This e-mail and any attachments are confidential and intended solely for the use of the recipient(s) to whom they are addressed. If you have received it in error, please destroy all copies and inform the sender. This email and any attachments are believed to be free from viruses but BBSRC accepts no liability in connection therewith.
|