<html><body><div style="color:#000; background-color:#fff; font-family:times new roman, new york, times, serif;font-size:14pt"><div><span>Fajar,</span></div><div><br><span></span></div><div><br><span></span></div><div><span>So far looks good only that users are not authenticating yet.</span></div><div><br><span></span></div><div><span>Please see the log i have;</span></div><div><br><span></span></div><div><span><span style="background-color: rgb(255, 255, 0);">Found Auth-Type = Accept</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">Auth-Type = Accept, accepting the user</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(0, 255, 255); font-weight: bold;">Login OK: [cccl@utmax/<via Auth-Type = Accept>] (from client Wimax port 0 cli 6416f0010cbf)</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">#
Executing section post-auth from file /usr/local/etc/raddb/sites-enabled/default</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">+- entering group post-auth {...}</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[reply_log] expand: /usr/local/var/log/radius/radacct/%{Client-IP-Address}/reply-detail-%Y%m%d -> /usr/local/var/log/radius/radacct/196.0.4.18/reply-detail-20120306</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[reply_log] /usr/local/var/log/radius/radacct/%{Client-IP-Address}/reply-detail-%Y%m%d expands to /usr/local/var/log/radius/radacct/196.0.4.18/reply-detail-20120306</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[reply_log] expand: %t -> Tue Mar 6 12:23:04
2012</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">++[reply_log] returns ok</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] Processing sql_log_postauth</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] expand: %{User-Name} -> cccl@utmax</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] expand: %{%{User-Name}:-DEFAULT} -> cccl@utmax</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] sql_set_user escaped user --> 'cccl@utmax'</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] WARNING: Deprecated conditional expansion ":-". See "man
unlang" for details</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] ... expanding second conditional</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] expand: Chap-Password -> Chap-Password</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] expand: INSERT INTO radpostauth (username, pass, reply, authdate) VALUES ('%{User-Name}', '%{User-Password:-Chap-Password}',
'%{reply:Packet-Type}', '%S'); -> INSERT INTO radpostauth (username, pass, reply, authdate) VALUES ('cccl@utmax', 'Chap-Password', 'Access-Accept', '2012-03-06 12:23:04');</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">[sql_log] expand: /usr/local/var/log/radius/radacct/sql-relay -> /usr/local/var/log/radius/radacct/sql-relay</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">++[sql_log] returns ok</span><br style="background-color: rgb(255, 255, 0);"><span
style="background-color: rgb(255, 255, 0);">++[exec] returns noop</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> expand: %{User-Name} -> cccl@utmax</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">++[request] returns noop</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> expand: %{EAP-MSK} -> </span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">++[reply] returns noop</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 0, 0); font-weight: bold;">[wimax] No EAP-MSK or EAP-EMSK. Cannot create WiMAX keys.</span> i wonder what this error means<br style="background-color: rgb(255, 0, 0); font-weight: bold;"><span style="background-color:
rgb(255, 0, 0); font-weight: bold;">++[wimax] returns noop</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);">Sending Access-Accept of id 16 to 196.0.4.18 port 1812</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> Service-Type = Framed-User</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> Framed-Protocol = PPP</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> Framed-Address = 255.255.255.254</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> Framed-Netmask = 255.255.255.255</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> WiMAX-FA-RK-Key =
0x00</span><br style="background-color: rgb(255, 255, 0);"><span style="background-color: rgb(255, 255, 0);"> WiMAX-MSK = 0x</span><br></span></div><div><br><span></span></div><div><span>The entry i have in my users's file is this</span></div><div><br><span></span></div><div><span>DEFAULT Auth-Type :=Accept<br> Service-Type = Framed-User,<br> Framed-Protocol = PPP,<br> Framed-Address = 255.255.255.254,<br> Framed-Netmask =
255.255.255.255,<br> Fall-Through = 0<br></span></div><div> </div><div>Eric M<br></div> <div style="font-family: times new roman,new york,times,serif; font-size: 14pt;"> <div style="font-family: times new roman,new york,times,serif; font-size: 12pt;"> <div dir="ltr"> <font face="Arial" size="2"> <hr size="1"> <b><span style="font-weight: bold;">From:</span></b> Fajar A. Nugraha <list@fajar.net><br> <b><span style="font-weight: bold;">To:</span></b> Mulindwa <meric_l@yahoo.com> <br><b><span style="font-weight: bold;">Cc:</span></b> FreeRadius users mailing list <freeradius-users@lists.freeradius.org> <br> <b><span style="font-weight: bold;">Sent:</span></b> Tuesday, March 6, 2012 11:22 AM<br> <b><span style="font-weight: bold;">Subject:</span></b> Re: Wimax with Free radius<br> </font> </div> <br>
On Tue, Mar 6, 2012 at 3:16 PM, Mulindwa <<a ymailto="mailto:meric_l@yahoo.com" href="mailto:meric_l@yahoo.com">meric_l@yahoo.com</a>> wrote:<br>> Thanks Fajar,<br>> My users are using EAP-TTLS, is there a possibility to have them connect<br>> without a password<br><br>See http://wiki.freeradius.org/Protocol%20Compatibility<br><br>or to be specific, just the paragraph under the table :)<br><br>-- <br>Fajar<br><br><br> </div> </div> </div></body></html>