<table cellspacing="0" cellpadding="0" border="0" ><tr><td valign="top" style="font: inherit;">Hi ..i'm trying to send INVITE message between alice and bob.<br>
and i want to call control using b2bua_radius.py (sippy http://b2bua.org/wiki/B2BUADocumentation) i.e i want call will<br>
disconnect after 30 second and radius will generate Start/Stop<br>
.<br>
i did all the setup and also i don't want to redius server<br>
Authentication/Authorization because<br>
the my sip proxy i.e open-ims already did<br>
Authentication/Authorization sing Md5-digest<br>
so i want bypass. so i'm using following command<br>i'm not able to set -s flag for static routing and what will be value for this like <br><br><pre class="wiki">b2bua_radius.py ... -s '200110508667@b2bua.org;cli=16046288900;rid=-1;expires=30;np_expires=5;ash=Name%3AValue' .<br>or where radius get for this routing for dynamic routing like this<br>h323-ivr-in = 'Routing:200110508667@b2bua.org;cli=16046288900;rid=-1;expires=30;np_expires=5;ash=Name%3AValue'<br><br></pre><br>
<br>
[root@ngpchn sippy]# python b2bua_radius.py -fDU -l 172.18.3.52 -p 5065<br>
-a 172.18.3.52 -k 3 -A 2 -m 30 <br>
<br>
i'm not pretty much sure about flag -s and how i will.<br>
<br>
after successfully running all these component i found<br>
when I INVITE for alice to bob<br>
i found SIP/2.0 500 Internal Server Error (2)<br>
then call able to connect but call not able to disconnect after 30<br>
second e.i my requirement<br>
another problem is when i hang up call after 30(manually ) only one<br>
side call is dissconnet<br>
and another side is continue .. i'm not able rectify the problem.<br>
<br>
can any help me regarding resolve this problem also what i doing<br>
roungh specially senting with<br>
-s.<br>
<br>
i'm attaching log file also....<br>
waiting for positive responce..<br>
<br>
<br>
Thanks<br>
~Suresh<br>
<br>
<br>
[root@ngpchn sippy]# python b2bua_radius.py -fD -l 172.18.3.52 -p 5065<br>
-a 172.18.3.52 -k 3 -A 2 -m 30<br>
14 Jan 16:03:13/GLOBAL/b2bua: RECEIVED message from <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
INVITE <a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a> SIP/2.0<br>
Record-Route: <sip:mo@scscf.info-spectrum.<div id=":xm" class="ArwC7c ckChnd"><wbr>com:6060;lr><br>
Route: <sip:172.18.3.52:5065;lr>,<br>
<sip:iscmark@scscf.info-<wbr>spectrum.com:6060;lr;s=1;h=0;<wbr>d=0;a=<wbr>7369703a616c69636540696e666f2d<wbr>737065637472756d2e636f6d><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>><br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Max-Forwards: 15<br>
Allow: INVITE,ACK,CANCEL,BYE,MESSAGE,<wbr>OPTIONS,UPDATE,NOTIFY,PRACK<br>
Contact: <sip:alice@172.18.1.197:1976;<wbr>transport=udp>;expires=1000<br>
User-Agent: Mercuro IMS Client Beta (4.0.1011.0)<br>
Supported: sdp-anat<br>
Content-Type: application/sdp<br>
P-Access-Network-Info: 3GPP-UTRAN-TDD;utran-cell-id-<wbr>3gpp=00000000<br>
Privacy: none<br>
Content-Length: 231<br>
P-Asserted-Identity: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>><br>
P-Charging-Vector:<br>
icid-value="P-<wbr>CSCFabcd496dbf6900000026";<wbr>icid-generated-at=172.18.3.52;<wbr>orig-ioi="<a href="http://info-spectrum.com" target="_blank">info-spectrum.com</a>"<br>
Timestamp: 1231929193<br>
<br>
v=0<br>
o=- 3344 3344 IN IP4 172.18.1.197<br>
s=Mercuro IMS Client Session<br>
t=0 0<br>
m=audio 31562 RTP/AVP 0 8 101<br>
c=IN IP4 172.18.1.197<br>
a=rtpmap:0 PCMU/8000/1<br>
a=rtpmap:8 PCMA/8000/1<br>
a=rtpmap:101 telephone-event/8000<br>
a=fmtp:101 0-15<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: SENDING message to <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
SIP/2.0 100 Trying<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
Record-Route: <sip:mo@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>><br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Server: Sippy B2BUA (RADIUS)<br>
<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: sending AAA request:<br>
User-Name = '172.18.3.52'<br>
Password = 'cisco'<br>
Calling-Station-Id = 'alice'<br>
Called-Station-Id = 'bob'<br>
h323-conf-id = 'B8377C92 DF6642BB 25A7C3A3 D4E529CE'<br>
call-id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
h323-remote-address = '172.18.3.52'<br>
h323-session-protocol = 'sipv2'<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: AAA request accepted<br>
(delay is 0.030), processing response:<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: SENDING message to <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
SIP/2.0 500 Internal Server Error (2)<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
Record-Route: <sip:mo@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>>;<wbr>tag=<wbr>d63760e38a4879ada2cf7f5c137369<wbr>ac<br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Server: Sippy B2BUA (RADIUS)<br>
<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: sending Acct Stop (Answer):<br>
h323-call-origin = 'answer'<br>
h323-call-type = 'VoIP'<br>
h323-session-protocol = 'sipv2'<br>
h323-setup-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
User-Name = '172.18.3.52'<br>
Calling-Station-Id = 'alice'<br>
Called-Station-Id = 'bob'<br>
h323-conf-id = 'B8377C92 DF6642BB 25A7C3A3 D4E529CE'<br>
call-id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
Acct-Session-Id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
h323-remote-address = '172.18.3.52'<br>
h323-disconnect-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
h323-connect-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
Acct-Session-Time = '0'<br>
h323-disconnect-cause = '29'<br>
Acct-Status-Type = 'Stop'<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: RECEIVED message from <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
ACK <a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a> SIP/2.0<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.0<br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>>;<wbr>tag=<wbr>d63760e38a4879ada2cf7f5c137369<wbr>ac<br>
CSeq: 901 ACK<br>
Route: <sip:orig@scscf.info-spectrum.<wbr>com:6060;lr><br>
User-Agent: InfoIMS(1.0.0-dev1 InfoIMS (i386/linux))<br>
Content-Length: 0<br>
<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: RECEIVED message from <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
INVITE <a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a> SIP/2.0<br>
Record-Route: <sip:mt@scscf.info-spectrum.<wbr>com:6060;lr><br>
Route: <sip:172.18.3.52:5065;lr>,<br>
<sip:iscmark@scscf.info-<wbr>spectrum.com:6060;lr;s=1;h=0;<wbr>d=1;a=<wbr>7369703a626f6240696e666f2d7370<wbr>65637472756d2e636f6d><br>
Record-Route: <sip:mo@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.9904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.1<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>><br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Max-Forwards: 14<br>
Allow: INVITE,ACK,CANCEL,BYE,MESSAGE,<wbr>OPTIONS,UPDATE,NOTIFY,PRACK<br>
Contact: <sip:alice@172.18.1.197:1976;<wbr>transport=udp>;expires=1000<br>
User-Agent: Mercuro IMS Client Beta (4.0.1011.0)<br>
Supported: sdp-anat<br>
Content-Type: application/sdp<br>
P-Access-Network-Info: 3GPP-UTRAN-TDD;utran-cell-id-<wbr>3gpp=00000000<br>
Privacy: none<br>
Content-Length: 231<br>
P-Asserted-Identity: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>><br>
P-Charging-Vector:<br>
icid-value="P-<wbr>CSCFabcd496dbf6900000026";<wbr>icid-generated-at=172.18.3.52;<wbr>orig-ioi="<a href="http://info-spectrum.com" target="_blank">info-spectrum.com</a>"<br>
Timestamp: 1231929193<br>
<br>
v=0<br>
o=- 3344 3344 IN IP4 172.18.1.197<br>
s=Mercuro IMS Client Session<br>
t=0 0<br>
m=audio 31562 RTP/AVP 0 8 101<br>
c=IN IP4 172.18.1.197<br>
a=rtpmap:0 PCMU/8000/1<br>
a=rtpmap:8 PCMA/8000/1<br>
a=rtpmap:101 telephone-event/8000<br>
a=fmtp:101 0-15<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: SENDING message to <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
SIP/2.0 100 Trying<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.9904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.1<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
Record-Route: <sip:mt@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>><br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Server: Sippy B2BUA (RADIUS)<br>
<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: sending AAA request:<br>
User-Name = '172.18.3.52'<br>
Password = 'cisco'<br>
Calling-Station-Id = 'alice'<br>
Called-Station-Id = 'bob'<br>
h323-conf-id = '7EAC4F20 651D23F0 75C1FFA6 E6EE4BFA'<br>
call-id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
h323-remote-address = '172.18.3.52'<br>
h323-session-protocol = 'sipv2'<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: AAA request accepted<br>
(delay is 0.025), processing response:<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: SENDING message to <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
SIP/2.0 500 Internal Server Error (2)<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.9904bbf3.0<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.8904bbf3.1<br>
Via: SIP/2.0/UDP 172.18.3.52:4060;branch=<wbr>z9hG4bKa35e.28aed705.0<br>
Via: SIP/2.0/UDP 172.18.1.197:1976;rport=1976;<wbr>branch=z9hG4bK7376<br>
Record-Route: <sip:mt@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@scscf.info-spectrum.<wbr>com:6060;lr><br>
Record-Route: <sip:mo@pcscf.info-spectrum.<wbr>com:4060;lr><br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>>;<wbr>tag=<wbr>4d778ee83fef7504d306e1345f51b4<wbr>dd<br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
CSeq: 901 INVITE<br>
Server: Sippy B2BUA (RADIUS)<br>
<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: sending Acct Stop (Answer):<br>
h323-call-origin = 'answer'<br>
h323-call-type = 'VoIP'<br>
h323-session-protocol = 'sipv2'<br>
h323-setup-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
User-Name = '172.18.3.52'<br>
Calling-Station-Id = 'alice'<br>
Called-Station-Id = 'bob'<br>
h323-conf-id = '7EAC4F20 651D23F0 75C1FFA6 E6EE4BFA'<br>
call-id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
Acct-Session-Id = '<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>'<br>
h323-remote-address = '172.18.3.52'<br>
h323-disconnect-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
h323-connect-time = '10:33:13.000 GMT Wed Jan 14 2009'<br>
Acct-Session-Time = '0'<br>
h323-disconnect-cause = '29'<br>
Acct-Status-Type = 'Stop'<br>
<br>
14 Jan 16:03:13/GLOBAL/b2bua: RECEIVED message from <a href="http://172.18.3.52:6060" target="_blank">172.18.3.52:6060</a>:<br>
ACK <a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a> SIP/2.0<br>
Via: SIP/2.0/UDP 172.18.3.52:6060;branch=<wbr>z9hG4bKa35e.9904bbf3.0<br>
From: <<a href="mailto:sip%3Aalice@info-spectrum.com">sip:alice@info-spectrum.com</a>>;<wbr>tag=11382<br>
Call-ID: <a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a><br>
To: <<a href="mailto:sip%3Abob@info-spectrum.com">sip:bob@info-spectrum.com</a>>;<wbr>tag=<wbr>4d778ee83fef7504d306e1345f51b4<wbr>dd<br>
CSeq: 901 ACK<br>
User-Agent: InfoIMS(1.0.0-dev1 InfoIMS (i386/linux))<br>
Content-Length: 0<br>
<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: Acct/answer request<br>
accepted (delay is 0.083)<br>
<br>
14 Jan 16:03:13/<a href="http://1231924661763@172.18.1.197/b2bua" target="_blank">1231924661763@172.18.<wbr>1.197/b2bua</a>: Acct/answer request<br>
accepted (delay is 0.071)<br>
<br>
GC is invoked, 0 calls in map<br>
0 client, 0 server transactions in memory<br>
<br>
<br>
<br>
------------------------------<wbr>------------------------------<wbr>--------------------------<br>
<br>
<br>
<br>
<br>
[root@ngpchn raddb]# radiusd -X<br>
FreeRADIUS Version 2.1.3, for host i686-pc-linux-gnu, built on Jan 13<br>
2009 at 11:56:22<br>
Copyright (C) 1999-2008 The FreeRADIUS server project and contributors.<br>
There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A<br>
PARTICULAR PURPOSE.<br>
You may redistribute copies of FreeRADIUS under the terms of the<br>
GNU General Public License v2.<br>
Starting - reading configuration files ...<br>
including configuration file /etc/raddb/radiusd.conf<br>
including configuration file /etc/raddb/proxy.conf<br>
including configuration file /etc/raddb/clients.conf<br>
including files in directory /etc/raddb/modules/<br>
including configuration file /etc/raddb/modules/mac2vlan<br>
including configuration file /etc/raddb/modules/counter<br>
including configuration file /etc/raddb/modules/passwd<br>
including configuration file /etc/raddb/modules/mschap<br>
including configuration file /etc/raddb/modules/ldap<br>
including configuration file /etc/raddb/modules/wimax<br>
including configuration file /etc/raddb/modules/sradutmp<br>
including configuration file /etc/raddb/modules/etc_group<br>
including configuration file /etc/raddb/modules/unix<br>
including configuration file /etc/raddb/modules/radutmp<br>
including configuration file /etc/raddb/modules/digest<br>
including configuration file /etc/raddb/modules/exec<br>
including configuration file /etc/raddb/modules/policy<br>
including configuration file /etc/raddb/modules/<a href="http://detail.example.com" target="_blank">detail.<wbr>example.com</a><br>
including configuration file /etc/raddb/modules/detail.log<br>
including configuration file /etc/raddb/modules/perl<br>
including configuration file /etc/raddb/modules/mac2ip<br>
including configuration file /etc/raddb/modules/ippool<br>
including configuration file /etc/raddb/modules/inner-eap<br>
including configuration file /etc/raddb/modules/acct_unique<br>
including configuration file /etc/raddb/modules/sqlcounter_<wbr>expire_on_login<br>
including configuration file /etc/raddb/modules/pap<br>
including configuration file /etc/raddb/modules/smbpasswd<br>
including configuration file /etc/raddb/modules/expr<br>
including configuration file /etc/raddb/modules/linelog<br>
including configuration file /etc/raddb/modules/expiration<br>
including configuration file /etc/raddb/modules/files<br>
including configuration file /etc/raddb/modules/attr_<wbr>rewrite<br>
including configuration file /etc/raddb/modules/logintime<br>
including configuration file /etc/raddb/modules/echo<br>
including configuration file /etc/raddb/modules/always<br>
including configuration file /etc/raddb/modules/chap<br>
including configuration file /etc/raddb/modules/realm<br>
including configuration file /etc/raddb/modules/preprocess<br>
including configuration file /etc/raddb/modules/pam<br>
including configuration file /etc/raddb/modules/krb5<br>
including configuration file /etc/raddb/modules/detail<br>
including configuration file /etc/raddb/modules/checkval<br>
including configuration file /etc/raddb/modules/attr_filter<br>
including configuration file /etc/raddb/modules/sql_log<br>
including configuration file /etc/raddb/eap.conf<br>
including configuration file /etc/raddb/sql.conf<br>
including configuration file /etc/raddb/sql/mysql/dialup.<wbr>conf<br>
including configuration file /etc/raddb/sql/mysql/counter.<wbr>conf<br>
including configuration file /etc/raddb/policy.conf<br>
including files in directory /etc/raddb/sites-enabled/<br>
including configuration file /etc/raddb/sites-enabled/<wbr>default<br>
including configuration file /etc/raddb/sites-enabled/<wbr>inner-tunnel<br>
including dictionary file /etc/raddb/dictionary<br>
main {<br>
prefix = "/usr/local"<br>
localstatedir = "/var"<br>
logdir = "/var/log/radius"<br>
libdir = "/usr/local/lib"<br>
radacctdir = "/var/log/radius/radacct"<br>
hostname_lookups = no<br>
max_request_time = 30<br>
cleanup_delay = 5<br>
max_requests = 1024<br>
allow_core_dumps = no<br>
pidfile = "/var/run/radiusd/radiusd.pid"<br>
checkrad = "/usr/local/sbin/checkrad"<br>
debug_level = 0<br>
proxy_requests = yes<br>
log {<br>
stripped_names = no<br>
auth = no<br>
auth_badpass = no<br>
auth_goodpass = no<br>
}<br>
security {<br>
max_attributes = 200<br>
reject_delay = 1<br>
status_server = yes<br>
}<br>
}<br>
client 172.18.3.52 {<br>
ipaddr = 172.18.3.52<br>
require_message_authenticator = no<br>
secret = "testing123"<br>
shortname = "local"<br>
nastype = "portslave"<br>
login = "!root"<br>
password = "nopassword"<br>
}<br>
client 172.18.1.197 {<br>
ipaddr = 172.18.1.197<br>
require_message_authenticator = no<br>
secret = "testing123"<br>
shortname = "NTRadPing"<br>
nastype = "portslave"<br>
login = "!root"<br>
password = "nopassword"<br>
}<br>
radiusd: #### Loading Realms and Home Servers ####<br>
proxy server {<br>
retry_delay = 5<br>
retry_count = 3<br>
default_fallback = no<br>
dead_time = 120<br>
wake_all_if_all_dead = no<br>
}<br>
home_server localhost {<br>
ipaddr = 127.0.0.1<br>
port = 1812<br>
type = "auth"<br>
secret = "testing123"<br>
response_window = 20<br>
max_outstanding = 65536<br>
zombie_period = 40<br>
status_check = "status-server"<br>
ping_interval = 30<br>
check_interval = 30<br>
num_answers_to_alive = 3<br>
num_pings_to_alive = 3<br>
revive_interval = 120<br>
status_check_timeout = 4<br>
}<br>
home_server_pool my_auth_failover {<br>
type = fail-over<br>
home_server = localhost<br>
}<br>
realm <a href="http://example.com" target="_blank">example.com</a> {<br>
auth_pool = my_auth_failover<br>
}<br>
realm <a href="http://info-spectrum.com" target="_blank">info-spectrum.com</a> {<br>
nostrip<br>
authhost = LOCAL<br>
accthost = LOCAL<br>
}<br>
realm LOCAL {<br>
}<br>
radiusd: #### Instantiating modules ####<br>
instantiate {<br>
Module: Linked to module rlm_exec<br>
Module: Instantiating exec<br>
exec {<br>
wait = no<br>
input_pairs = "request"<br>
shell_escape = yes<br>
}<br>
Module: Linked to module rlm_expr<br>
Module: Instantiating expr<br>
Module: Linked to module rlm_expiration<br>
Module: Instantiating expiration<br>
expiration {<br>
reply-message = "Password Has Expired "<br>
}<br>
Module: Linked to module rlm_logintime<br>
Module: Instantiating logintime<br>
logintime {<br>
reply-message = "You are calling outside your allowed timespan "<br>
minimum-timeout = 60<br>
}<br>
}<br>
radiusd: #### Loading Virtual Servers ####<br>
server inner-tunnel {<br>
modules {<br>
Module: Checking authenticate {...} for more modules to load<br>
Module: Linked to module rlm_pap<br>
Module: Instantiating pap<br>
pap {<br>
encryption_scheme = "auto"<br>
auto_header = no<br>
}<br>
Module: Linked to module rlm_chap<br>
Module: Instantiating chap<br>
Module: Linked to module rlm_mschap<br>
Module: Instantiating mschap<br>
mschap {<br>
use_mppe = yes<br>
require_encryption = no<br>
require_strong = no<br>
with_ntdomain_hack = no<br>
}<br>
Module: Linked to module rlm_unix<br>
Module: Instantiating unix<br>
unix {<br>
radwtmp = "/var/log/radius/radwtmp"<br>
}<br>
Module: Linked to module rlm_eap<br>
Module: Instantiating eap<br>
eap {<br>
default_eap_type = "md5"<br>
timer_expire = 60<br>
ignore_unknown_eap_types = no<br>
cisco_accounting_username_bug = no<br>
max_sessions = 2048<br>
}<br>
Module: Linked to sub-module rlm_eap_md5<br>
Module: Instantiating eap-md5<br>
Module: Linked to sub-module rlm_eap_leap<br>
Module: Instantiating eap-leap<br>
Module: Linked to sub-module rlm_eap_gtc<br>
Module: Instantiating eap-gtc<br>
gtc {<br>
challenge = "Password: "<br>
auth_type = "PAP"<br>
}<br>
Module: Linked to sub-module rlm_eap_tls<br>
Module: Instantiating eap-tls<br>
tls {<br>
rsa_key_exchange = no<br>
dh_key_exchange = yes<br>
rsa_key_length = 512<br>
dh_key_length = 512<br>
verify_depth = 0<br>
pem_file_type = yes<br>
private_key_file = "/etc/raddb/certs/server.pem"<br>
certificate_file = "/etc/raddb/certs/server.pem"<br>
CA_file = "/etc/raddb/certs/ca.pem"<br>
private_key_password = "whatever"<br>
dh_file = "/etc/raddb/certs/dh"<br>
random_file = "/etc/raddb/certs/random"<br>
fragment_size = 1024<br>
include_length = yes<br>
check_crl = no<br>
cipher_list = "DEFAULT"<br>
make_cert_command = "/etc/raddb/certs/bootstrap"<br>
cache {<br>
enable = no<br>
lifetime = 24<br>
max_entries = 255<br>
}<br>
}<br>
Module: Linked to sub-module rlm_eap_ttls<br>
Module: Instantiating eap-ttls<br>
ttls {<br>
default_eap_type = "md5"<br>
copy_request_to_tunnel = no<br>
use_tunneled_reply = no<br>
virtual_server = "inner-tunnel"<br>
}<br>
Module: Linked to sub-module rlm_eap_peap<br>
Module: Instantiating eap-peap<br>
peap {<br>
default_eap_type = "mschapv2"<br>
copy_request_to_tunnel = no<br>
use_tunneled_reply = no<br>
proxy_tunneled_request_as_eap = yes<br>
virtual_server = "inner-tunnel"<br>
}<br>
Module: Linked to sub-module rlm_eap_mschapv2<br>
Module: Instantiating eap-mschapv2<br>
mschapv2 {<br>
with_ntdomain_hack = no<br>
}<br>
Module: Checking authorize {...} for more modules to load<br>
Module: Linked to module rlm_realm<br>
Module: Instantiating suffix<br>
realm suffix {<br>
format = "suffix"<br>
delimiter = "@"<br>
ignore_default = no<br>
ignore_null = no<br>
}<br>
Module: Linked to module rlm_files<br>
Module: Instantiating files<br>
files {<br>
usersfile = "/etc/raddb/users"<br>
acctusersfile = "/etc/raddb/acct_users"<br>
preproxy_usersfile = "/etc/raddb/preproxy_users"<br>
compat = "no"<br>
}<br>
Module: Checking session {...} for more modules to load<br>
Module: Linked to module rlm_radutmp<br>
Module: Instantiating radutmp<br>
radutmp {<br>
filename = "/var/log/radius/radutmp"<br>
username = "%{User-Name}"<br>
case_sensitive = yes<br>
check_with_nas = yes<br>
perm = 384<br>
callerid = yes<br>
}<br>
Module: Checking post-proxy {...} for more modules to load<br>
Module: Checking post-auth {...} for more modules to load<br>
Module: Linked to module rlm_attr_filter<br>
Module: Instantiating attr_filter.access_reject<br>
attr_filter attr_filter.access_reject {<br>
attrsfile = "/etc/raddb/attrs.access_<wbr>reject"<br>
key = "%{User-Name}"<br>
}<br>
}<br>
}<br>
modules {<br>
Module: Checking authenticate {...} for more modules to load<br>
Module: Checking authorize {...} for more modules to load<br>
Module: Linked to module rlm_preprocess<br>
Module: Instantiating preprocess<br>
preprocess {<br>
huntgroups = "/etc/raddb/huntgroups"<br>
hints = "/etc/raddb/hints"<br>
with_ascend_hack = no<br>
ascend_channels_per_line = 23<br>
with_ntdomain_hack = no<br>
with_specialix_jetstream_hack = no<br>
with_cisco_vsa_hack = no<br>
with_alvarion_vsa_hack = no<br>
}<br>
Module: Checking preacct {...} for more modules to load<br>
Module: Linked to module rlm_acct_unique<br>
Module: Instantiating acct_unique<br>
acct_unique {<br>
key = "User-Name, Acct-Session-Id, NAS-IP-Address,<br>
Client-IP-Address, NAS-Port"<br>
}<br>
Module: Checking accounting {...} for more modules to load<br>
Module: Linked to module rlm_detail<br>
Module: Instantiating detail<br>
detail {<br>
detailfile =<br>
"/var/log/radius/radacct/%{<wbr>Client-IP-Address}/detail-%Y%<wbr>m%d"<br>
header = "%t"<br>
detailperm = 384<br>
dirperm = 493<br>
locking = no<br>
log_packet_header = no<br>
}<br>
Module: Instantiating attr_filter.accounting_<wbr>response<br>
attr_filter attr_filter.accounting_<wbr>response {<br>
attrsfile = "/etc/raddb/attrs.accounting_<wbr>response"<br>
key = "%{User-Name}"<br>
}<br>
Module: Checking session {...} for more modules to load<br>
Module: Checking post-proxy {...} for more modules to load<br>
Module: Checking post-auth {...} for more modules to load<br>
}<br>
radiusd: #### Opening IP addresses and Ports ####<br>
listen {<br>
type = "auth"<br>
ipaddr = 172.18.3.52<br>
port = 1645<br>
}<br>
listen {<br>
type = "acct"<br>
ipaddr = 172.18.3.52<br>
port = 1646<br>
}<br>
Listening on authentication address 172.18.3.52 port 1645<br>
Listening on accounting address 172.18.3.52 port 1646<br>
Listening on proxy address 172.18.3.52 port 1647<br>
Ready to process requests.<br>
rad_recv: Access-Request packet from host 172.18.3.52 port 32957,<br>
id=237, length=247<br>
User-Name = "172.18.3.52"<br>
User-Password = "cisco"<br>
Calling-Station-Id = "alice"<br>
Called-Station-Id = "bob"<br>
h323-conf-id = "h323-conf-id=B8377C92 DF6642BB 25A7C3A3 D4E529CE"<br>
Cisco-AVPair = "call-id=<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.<wbr>1.197</a>"<br>
h323-remote-address = "h323-remote-address=172.18.3.<wbr>52"<br>
Cisco-AVPair = "h323-session-protocol=sipv2"<br>
NAS-Port = 5060<br>
NAS-IP-Address = 172.18.3.52<br>
+- entering group authorize {...}<br>
++[preprocess] returns ok<br>
++[chap] returns noop<br>
++[mschap] returns noop<br>
[suffix] No '@' in User-Name = "172.18.3.52", looking up realm NULL<br>
[suffix] No such realm "NULL"<br>
++[suffix] returns noop<br>
[eap] No EAP-Message, not doing EAP<br>
++[eap] returns noop<br>
++[unix] returns notfound<br>
[files] users: Matched entry 172.18.3.52 at line 92<br>
++[files] returns ok<br>
++[expiration] returns noop<br>
++[logintime] returns noop<br>
++[pap] returns updated<br>
Found Auth-Type = PAP<br>
+- entering group PAP {...}<br>
[pap] login attempt with password "cisco"<br>
[pap] Using clear text password "cisco"<br>
[pap] User authenticated successfully<br>
++[pap] returns ok<br>
+- entering group post-auth {...}<br>
++[exec] returns noop<br>
Sending Access-Accept of id 237 to 172.18.3.52 port 32957<br>
Finished request 0.<br>
Going to the next request<br>
Waking up in 4.9 seconds.<br>
rad_recv: Accounting-Request packet from host 172.18.3.52 port 32958,<br>
id=238, length=540<br>
h323-call-origin = "h323-call-origin=answer"<br>
h323-call-type = "h323-call-type=VoIP"<br>
Cisco-AVPair = "h323-session-protocol=sipv2"<br>
h323-setup-time = "h323-setup-time=10:33:13.000 GMT Wed Jan 14 2009"<br>
User-Name = "172.18.3.52"<br>
Calling-Station-Id = "alice"<br>
Called-Station-Id = "bob"<br>
h323-conf-id = "h323-conf-id=B8377C92 DF6642BB 25A7C3A3 D4E529CE"<br>
Cisco-AVPair = "call-id=<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.<wbr>1.197</a>"<br>
Acct-Session-Id = "<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>"<br>
h323-remote-address = "h323-remote-address=172.18.3.<wbr>52"<br>
h323-disconnect-time = "h323-disconnect-time=10:33:<wbr>13.000 GMT<br>
Wed Jan 14 2009"<br>
h323-connect-time = "h323-connect-time=10:33:13.<wbr>000 GMT Wed Jan 14 2009"<br>
Acct-Session-Time = 0<br>
h323-disconnect-cause = "h323-disconnect-cause=29"<br>
Acct-Status-Type = Stop<br>
NAS-Port = 5060<br>
Acct-Delay-Time = 0<br>
NAS-IP-Address = 172.18.3.52<br>
+- entering group preacct {...}<br>
++[preprocess] returns ok<br>
[acct_unique] Hashing 'NAS-Port = 5060,Client-IP-Address =<br>
172.18.3.52,NAS-IP-Address = 172.18.3.52,Acct-Session-Id =<br>
"<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>",<wbr>User-Name = "172.18.3.52"'<br>
[acct_unique] Acct-Unique-Session-ID = "547b4ecb37f1696c".<br>
++[acct_unique] returns ok<br>
[suffix] No '@' in User-Name = "172.18.3.52", looking up realm NULL<br>
[suffix] No such realm "NULL"<br>
++[suffix] returns noop<br>
++[files] returns noop<br>
+- entering group accounting {...}<br>
[detail] expand:<br>
/var/log/radius/radacct/%{<wbr>Client-IP-Address}/detail-%Y%<wbr>m%d -><br>
/var/log/radius/radacct/<a href="http://172.18.3.52/detail-20090114" target="_blank">172.<wbr>18.3.52/detail-20090114</a><br>
[detail] /var/log/radius/radacct/%{<wbr>Client-IP-Address}/detail-%Y%<wbr>m%d<br>
expands to /var/log/radius/radacct/<a href="http://172.18.3.52/detail-20090114" target="_blank">172.<wbr>18.3.52/detail-20090114</a><br>
[detail] expand: %t -> Wed Jan 14 16:03:13 2009<br>
++[detail] returns ok<br>
++[unix] returns ok<br>
[radutmp] expand: /var/log/radius/radutmp -> /var/log/radius/radutmp<br>
[radutmp] expand: %{User-Name} -> 172.18.3.52<br>
rlm_radutmp: Logout for NAS local port 5060, but no Login record<br>
++[radutmp] returns ok<br>
[attr_filter.accounting_<wbr>response] expand: %{User-Name} -> 172.18.3.52<br>
attr_filter: Matched entry DEFAULT at line 12<br>
++[attr_filter.accounting_<wbr>response] returns updated<br>
Sending Accounting-Response of id 238 to 172.18.3.52 port 32958<br>
Finished request 1.<br>
Cleaning up request 1 ID 238 with timestamp +54<br>
Going to the next request<br>
Waking up in 4.9 seconds.<br>
rad_recv: Access-Request packet from host 172.18.3.52 port 32959,<br>
id=239, length=247<br>
User-Name = "172.18.3.52"<br>
User-Password = "cisco"<br>
Calling-Station-Id = "alice"<br>
Called-Station-Id = "bob"<br>
h323-conf-id = "h323-conf-id=7EAC4F20 651D23F0 75C1FFA6 E6EE4BFA"<br>
Cisco-AVPair = "call-id=<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.<wbr>1.197</a>"<br>
h323-remote-address = "h323-remote-address=172.18.3.<wbr>52"<br>
Cisco-AVPair = "h323-session-protocol=sipv2"<br>
NAS-Port = 5060<br>
NAS-IP-Address = 172.18.3.52<br>
+- entering group authorize {...}<br>
++[preprocess] returns ok<br>
++[chap] returns noop<br>
++[mschap] returns noop<br>
[suffix] No '@' in User-Name = "172.18.3.52", looking up realm NULL<br>
[suffix] No such realm "NULL"<br>
++[suffix] returns noop<br>
[eap] No EAP-Message, not doing EAP<br>
++[eap] returns noop<br>
++[unix] returns notfound<br>
[files] users: Matched entry 172.18.3.52 at line 92<br>
++[files] returns ok<br>
++[expiration] returns noop<br>
++[logintime] returns noop<br>
++[pap] returns updated<br>
Found Auth-Type = PAP<br>
+- entering group PAP {...}<br>
[pap] login attempt with password "cisco"<br>
[pap] Using clear text password "cisco"<br>
[pap] User authenticated successfully<br>
++[pap] returns ok<br>
+- entering group post-auth {...}<br>
++[exec] returns noop<br>
Sending Access-Accept of id 239 to 172.18.3.52 port 32959<br>
Finished request 2.<br>
Going to the next request<br>
Waking up in 4.9 seconds.<br>
rad_recv: Accounting-Request packet from host 172.18.3.52 port 32960,<br>
id=240, length=540<br>
h323-call-origin = "h323-call-origin=answer"<br>
h323-call-type = "h323-call-type=VoIP"<br>
Cisco-AVPair = "h323-session-protocol=sipv2"<br>
h323-setup-time = "h323-setup-time=10:33:13.000 GMT Wed Jan 14 2009"<br>
User-Name = "172.18.3.52"<br>
Calling-Station-Id = "alice"<br>
Called-Station-Id = "bob"<br>
h323-conf-id = "h323-conf-id=7EAC4F20 651D23F0 75C1FFA6 E6EE4BFA"<br>
Cisco-AVPair = "call-id=<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.<wbr>1.197</a>"<br>
Acct-Session-Id = "<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>"<br>
h323-remote-address = "h323-remote-address=172.18.3.<wbr>52"<br>
h323-disconnect-time = "h323-disconnect-time=10:33:<wbr>13.000 GMT<br>
Wed Jan 14 2009"<br>
h323-connect-time = "h323-connect-time=10:33:13.<wbr>000 GMT Wed Jan 14 2009"<br>
Acct-Session-Time = 0<br>
h323-disconnect-cause = "h323-disconnect-cause=29"<br>
Acct-Status-Type = Stop<br>
NAS-Port = 5060<br>
Acct-Delay-Time = 0<br>
NAS-IP-Address = 172.18.3.52<br>
+- entering group preacct {...}<br>
++[preprocess] returns ok<br>
[acct_unique] Hashing 'NAS-Port = 5060,Client-IP-Address =<br>
172.18.3.52,NAS-IP-Address = 172.18.3.52,Acct-Session-Id =<br>
"<a href="mailto:1231924661763@172.18.1.197">1231924661763@172.18.1.197</a>",<wbr>User-Name = "172.18.3.52"'<br>
[acct_unique] Acct-Unique-Session-ID = "547b4ecb37f1696c".<br>
++[acct_unique] returns ok<br>
[suffix] No '@' in User-Name = "172.18.3.52", looking up realm NULL<br>
[suffix] No such realm "NULL"<br>
++[suffix] returns noop<br>
++[files] returns noop<br>
+- entering group accounting {...}<br>
[detail] expand:<br>
/var/log/radius/radacct/%{<wbr>Client-IP-Address}/detail-%Y%<wbr>m%d -><br>
/var/log/radius/radacct/<a href="http://172.18.3.52/detail-20090114" target="_blank">172.<wbr>18.3.52/detail-20090114</a><br>
[detail] /var/log/radius/radacct/%{<wbr>Client-IP-Address}/detail-%Y%<wbr>m%d<br>
expands to /var/log/radius/radacct/<a href="http://172.18.3.52/detail-20090114" target="_blank">172.<wbr>18.3.52/detail-20090114</a><br>
[detail] expand: %t -> Wed Jan 14 16:03:13 2009<br>
++[detail] returns ok<br>
++[unix] returns ok<br>
[radutmp] expand: /var/log/radius/radutmp -> /var/log/radius/radutmp<br>
[radutmp] expand: %{User-Name} -> 172.18.3.52<br>
rlm_radutmp: Logout for NAS local port 5060, but no Login record<br>
++[radutmp] returns ok<br>
[attr_filter.accounting_<wbr>response] expand: %{User-Name} -> 172.18.3.52<br>
attr_filter: Matched entry DEFAULT at line 12<br>
++[attr_filter.accounting_<wbr>response] returns updated<br>
Sending Accounting-Response of id 240 to 172.18.3.52 port 32960<br>
Finished request 3.<br>
Cleaning up request 3 ID 240 with timestamp +54<br>
Going to the next request<br>
Waking up in 4.8 seconds.<br>
Cleaning up request 0 ID 237 with timestamp +54<br>
Cleaning up request 2 ID 239 with timestamp +54<br>
Ready to process requests.</div></td></tr></table><br>