Re: Auth Problems 2 !!



Hi Alan,

in mysql table, i remove this options ":= Local", and now others errors appear:

Thank's a Lot Alan.....

Emerson

rlm_sql (sql): Released sql socket id: 1
 modcall[authorize]: module "sql" returns ok for request 3
modcall: leaving group authorize (returns updated) for request 3
 rad_check_password:  Found Auth-Type EAP
auth: type "EAP"
 Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 3
 rlm_eap: Request found, released from the list
 rlm_eap: EAP/tls
 rlm_eap: processing type tls
 rlm_eap_tls: Authenticate
 rlm_eap_tls: processing TLS
rlm_eap_tls:  Length Included
 eaptls_verify returned 11
 rlm_eap_tls: <<< TLS 1.0 Alert [length 0002], fatal unknown_ca
TLS Alert read:fatal:unknown CA
   TLS_accept:failed in SSLv3 read client certificate A
7791:error:14094418:SSL routines:SSL3_READ_BYTES:tlsv1 alert unknown ca:s3_pkt.c:1052:SSL alert number 48 7791:error:140940E5:SSL routines:SSL3_READ_BYTES:ssl handshake failure:s3_pkt.c:837:
rlm_eap_tls: SSL_read failed in a system call (-1), TLS session fails.
In SSL Handshake Phase
In SSL Accept mode
rlm_eap_tls: BIO_read failed in a system call (-1), TLS session fails.
 eaptls_process returned 13
 rlm_eap: Freeing handler
 modcall[authenticate]: module "eap" returns reject for request 3
modcall: leaving group authenticate (returns reject) for request 3
auth: Failed to validate the user.
Login incorrect: [usuario1/<no User-Password attribute>] (from client mslink-radius port 0 cli 0014a53c478d)
Delaying request 3 for 1 seconds
Finished request 3
Going to the next request
Waking up in 6 seconds...
--- Walking the entire request list ---
Cleaning up request 0 ID 65 with timestamp 4496e659
Cleaning up request 1 ID 66 with timestamp 4496e659
Cleaning up request 2 ID 67 with timestamp 4496e659
Sending Access-Reject of id 68 to 10.254.0.254 port 2053
       EAP-Message = 0x04030004
       Message-Authenticator = 0x00000000000000000000000000000000
Cleaning up request 3 ID 68 with timestamp 4496e659
Nothing to do.  Sleeping until we see a request.





This archive was generated by a fusion of Pipermail (Mailman edition) and MHonArc.