Re: (PM) Radius Secret

Thomas C Kinnen (tkinnen@livingston.com)
Fri, 09 Apr 1999 19:33:55 -0700

I don't work for Lucent RABU wrote:

> Never say never ;)
>
> use a sniffer on port 1645 or is it 1646 for stock LRABU? Unless you are
> using the RFC port(s) or other... okay, so you can't see it _in/on_ the
> PMx, but this is one method to find out what you set. Personally, I'd
> rather just verify what is in the configuration for RADIUS and reset it on
> the PMx... 8)

That will not work. The secret is never sent on the wire. It's used on
both ends to do the MD5 hash but not sent on the wire.

However, I *THINK* (Been a long time) the old C version of pmbackup makes a
binary file you can poke around with a hex editor in and try to find it. No
guarantee though. I know the C version of the dump user program can get
passwords in clear text from the user table.

-- 
Thomas C Kinnen - <tkinnen@ra.lucent.com> <tkinnen@sobhrach.com>
[RADIUS Test Engineer] - LUCENT Technologies RABU
"All of the opinions stated above are my own and not my employer's,
unless they were given to me by my employer"
-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.
Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>