All Apps and Add-ons

Why am I unable to get RADIUS Authentication?

ALLIACOM
New Member

Hello everyone

I need some help.
I use the radius application and I see the authentication of the latter with the server succeeded. while I can not log on splunk with my AD identifiers.
the internal splunk logs are below.

2018-03-22 10:07:27,815 ERROR RadiusAuth - Exception triggered when attempting to contact the RADIUS server 10.1.2.25: 
2018-03-22 10:07:27,815 INFO RadiusAuth - Authentication to primary RADIUS server failed
2018-03-22 10:07:27,816 INFO RadiusAuth - function=userLogin called, user 'df' authenticated action=fail, username=df
2018-03-22 10:07:29,999 ERROR RadiusAuth - Exception triggered when attempting to contact the RADIUS server 10.1.2.25: 
2018-03-22 10:07:30,000 INFO RadiusAuth - Authentication to primary RADIUS server failed
2018-03-22 10:07:30,000 INFO RadiusAuth - function=userLogin called, user 'df' authenticated action=fail, username=df
2018-03-22 10:09:00,999 INFO RadiusAuth - The user info cache directory does not exist yet

thank you in advance

0 Karma

ALLIACOM
New Member

@niketnilay please?

0 Karma

p_gurav
Champion

That error means that the RADIUS tried to test the configuration was unable to authenticate to the RADIUS server. Most likely this is due to something in configuration that prevents the app from authenticating (incorrect key, IP address restriction on server, etc.).

0 Karma

ALLIACOM
New Member

nevertheless the test during the configuration with my identifiers is OK.
nevertheless the test during the configuration with my identifiers pass. and I have verified but I see no errors on the items you have mentioned.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...