EAP-sim using freeradius

Song Zou a13519 at me.com
Mon Nov 19 13:28:00 CET 2018


please don’t send email

On Nov 19, 2018, at 20:20, Song Zou via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:

> please don’t send email
> 
> On Nov 19, 2018, at 20:19, Song Zou via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:
> 
> please don’t send email
> 
> On Nov 19, 2018, at 20:18, Song Zou via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:
> 
> please don’t send email
> 
> On Nov 19, 2018, at 20:17, Song Zou via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:
> 
> please don’t send email
> 
> On Aug 22, 2015, at 01:15, Siddharth Katragadda via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:
> 
> Hi Matthew
> Thanks for the suggestion.  I  tried by changing the EAP-Sim-IMSI to  User-Name
> -
> but I still get the  eap_sim: ERROR: EAP-SIM-RAND1 not found
> Although the  passwd file now says:  [passwd] = ok
> 
> So it looks like passwd file was able to find the User-Name in
> simtriplets.dat, so it should have extracted the  EAP-SIM-RAND1 etc from it
> right?
> 
> I've attached the debug log, passwd and simtriplets.dat
> 
> Btw, I did have 10 fields in the simtriplets.dat (delimited by colon). Why
> did you find only 4??
> 
> Thanks
> Sid
> 
> 
> 
> 
> On Fri, Aug 21, 2015 at 3:29 AM, Matthew Newton <mcn4 at leicester.ac.uk>
> wrote:
> 
> On Thu, Aug 20, 2015 at 05:12:00PM -0700, Siddharth Katragadda via
> Freeradius-Users wrote:
> So far, most of the vendors we work with seem to be using
> rlm_sim_files on Freeradius 2.x
> 
> I don't do EAP-SIM, so these are only observations on things that
> don't look quite right to me.
> 
> You've got
> 
> passwd passwd {
> ...
>  format =
> "*EAP-Sim-IMSI:EAP-Sim-RAND1:EAP-Sim-SRES1:EAP-Sim-KC1:EAP-Sim-RAND2:EAP-Sim-SRES2:EAP-Sim-KC2:EAP-Sim-RAND2:EAP-Sim-SRES2:EAP-Sim-KC2"
> ...
> }
> 
> which has 10 fields, but your simtriplets file only has 4 fields.
> 
> The incoming request has
> 
>  User-Name = "1001010123456789 at wlan.mnc001.mcc001.3gppnetwork.org"
> 
> but does not have an EAP-Sim-IMSI attribute (I'm not sure if this
> should be encoded within the EAP-Message), which is why you're
> getting [passwd] = notfound.
> 
> Does, for example,
> 
>  format = "*User-Name:EAP-Sim-RAND1:EAP-Sim-SRES1:EAP-Sim-KC1"
> 
> work?
> 
> But, as I said - only things that look wrong to me, and I have no
> knowledge of EAP-SIM at all. This might be the wrong thing to do.
> 
> Matthew
> 
> 
> 
> --
> Matthew Newton, Ph.D. <mcn4 at le.ac.uk>
> 
> Systems Specialist, Infrastructure Services,
> I.T. Services, University of Leicester, Leicester LE1 7RH, United Kingdom
> 
> For IT help contact helpdesk extn. 2253, <ithelp at le.ac.uk>
> 
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list