getting auth reject

Alan DeKok aland at deployingradius.com
Sun Oct 27 21:21:31 CET 2013


rich carroll wrote:
> Can someone tell me what is going on here? It gives me a chap auth
> request fail when everything else looks good.

  If you're getting an authentication reject, it's because the passwords
don't match.

> I am not sure why I get
> the "EAP session for state 0x467250bc44764540 did not finish!" I get the
> same message occasionally on other requests that seem to accept the auth
> anyway. This is a new canopy ap that I am trying to make work.

  Well, it's not the fault of FreeRADIUS.

> It
> originally wanted to use the user anonymous but It was failing on that
> so changed the phase 1 auth to use the mac also. Is this a cert error? A
> configuration error? Thanks for looking at it.
...
> Sun Oct 27 14:52:05 2013 : Info: [mschap] Creating challenge hash with
> username: 0a-00-3e-47-df-7d
> Sun Oct 27 14:52:05 2013 : Info: [mschap] Told to do MS-CHAPv2 for
> 0a-00-3e-47-df-7d with NT-Password
> Sun Oct 27 14:52:05 2013 : Info: [mschap] FAILED: MS-CHAP2-Response is
> incorrect

  That is pretty definitive.  The passwords don't match.

  Alan DeKok.


More information about the Freeradius-Users mailing list