FR3 and EAP-TLS session cache

Jyri Palis jyri.palis at gmail.com
Thu Jun 18 08:22:47 CEST 2015


Hi,

Compiled 3.0.x  (3.0.9) from git, the result is still the same,  Win7 supplicant EAP-TLS caching still triggers resumed session check-eap-tls code failure because %{TLS-*} variables are not propagated from cache.

Inital session stores data in cache:

Thu Jun 18 08:14:58 2015 : Debug: (6) eap_tls: Serialising session 1152bd8cb3b437c001f6f035cd3027f3388b9f1aa1547ab53247fdbceb4df40a, and storing in cache
Thu Jun 18 08:14:58 2015 : Debug: (7) eap_tls: Saving session 1152bd8cb3b437c001f6f035cd3027f3388b9f1aa1547ab53247fdbceb4df40a vps 0x283f220 in the cache

I have attached debug log of failed Win7 session resumption to this message.

-------------- next part --------------
An embedded and charset-unspecified text was scrubbed...
Name: tls_eap_w7_cache.txt
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20150618/81a5a5d0/attachment-0001.txt>
-------------- next part --------------


Regards,
Jyri

On 17 Jun 2015, at 16:06, Alan DeKok <aland at deployingradius.com> wrote:

> 
>  If you had missed something, I would have said it.
> 
>  What you missed is that my message said I pushed some minor fixes and better debug messages.  i.e. messages which you should post to the list, and messages which will help me track down the problem.  If you want your problem solved, then follow instructions.  It's that simple.
> 
>  Alan DeKok.
> 
> 
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html



More information about the Freeradius-Users mailing list