[EAP-PEAP] PEAP Authentication failed

Khalid Staili khalidstaili at gmail.com
Wed May 4 22:14:49 CEST 2011


I think the configuration is correct, because I have an Access-Accept when I
use an eapol_test to test my server locally (localhost client). But when I
use wpa_supplicant with the same configuration in an other host using ubuntu
10.10, I have the error I have mentionned.


2011/5/4 Phil Mayers <p.mayers at imperial.ac.uk>

> On 05/04/2011 08:27 PM, Khalid Staili wrote:
>
>> I am using freeradius in a wired network. Th authentication protocol I'm
>> using is PEAP.
>> I have configured the server like described in many different sites, but
>> I have a problem. This is the debug output I have :
>>
>
> Most "sites on the internet" are wrong. Ignore them.
>
> Follow the instructions on the FreeRADIUS site.
>
>
>
>  [peap] <<< TLS 1.0 Alert [length 0002], fatal decrypt_error
>> TLS Alert read:fatal:decrypt error
>> TLS_accept:failed in SSLv3 read client certificate A
>> rlm_eap: SSL error error:1409441B:SSL routines:SSL3_READ_BYTES:tlsv1
>> alert decrypt error
>> SSL: SSL_read failed inside of TLS (-1), TLS session fails.
>> TLS receive handshake failed during operation
>>
>
> Yikes.
>
> What is the client?
>
> It looks like you've got broken crypto somehow. Are you sure you haven't
> mangled your certificate & key?
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20110504/90a59640/attachment.html>


More information about the Freeradius-Users mailing list