radiusd debug understanding help needed (EAP session for state 0x... did not finish)

Arran Cudbard-Bell a.cudbardb at freeradius.org
Fri Jun 26 21:29:19 CEST 2015


> On Jun 26, 2015, at 3:16 PM, Zeus Panchenko <zeus at ibs.dn.ua> wrote:
> 
> Arran Cudbard-Bell <a.cudbardb at freeradius.org> wrote:
> 
>> 
>>> What you should do:
>>> 
>>> 1. Provide packet captures from the supplicant.
>>> 
>>> 2. Provide packet captures from the port on your NAS connected to the supplicant.
>>> 
>>> 3. Provide packet captures from the uplink of your NAS, on which RADIUS traffic is sent.
>>> 
>>> 4. Provide packet captures from the RADIUS server.
>> 
> 
> will it be enough just
> 
> tcpdump -ni interfase-for-auth host my.freeradius.foo
> 
> on both FR and supplicant?
> 
> since both of them are FreeBSD boxes, and the switch they are connected
> to has no tool to capture packets ...

No, it's not enough.

Buy a 10/100 hub and use that to mirror the packets.

http://www.ebay.ca/itm/NetGear-DS309-9-Port-10-100-Dual-Speed-Hub-Network-Switch-/171835398485?pt=LH_DefaultDomain_0&hash=item2802301955

These things are invaluable for diagnostics.

-Arran
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 842 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20150626/2c492dbe/attachment.sig>


More information about the Freeradius-Users mailing list