EAP-TLS and MYSQL

Stephane Rossi steph_rossi at hotmail.com
Tue Jul 26 20:05:08 CEST 2005


I'm using Freeradius in EAP-TLS and I'm trying to use dialupadmin/mysql.
Although the supplicant is not in my database, the NAS receives an Access-Accept.
Is this normal ?

#file is commented in my radiusd.conf.

thanks for your help.

Stephane Rossi

rlm_sql (sql): User testwifi not found in radgroupcheck
rlm_sql (sql): User not found
rlm_sql (sql): Released sql socket id: 2
  modcall[authorize]: module "sql" returns notfound for request 6
modcall: group authorize returns updated for request 6
  rad_check_password:  Found Auth-Type EAP
auth: type "EAP"
  Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 6
  rlm_eap: Request found, released from the list
  rlm_eap: EAP/tls
  rlm_eap: processing type tls
  rlm_eap_tls: Authenticate
  rlm_eap_tls: processing TLS
rlm_eap_tls: Received EAP-TLS ACK message
  rlm_eap_tls: ack handshake is finished
  eaptls_verify returned 3
  eaptls_process returned 3
  rlm_eap: Freeing handler
  modcall[authenticate]: module "eap" returns ok for request 6
modcall: group authenticate returns ok for request 6
Login OK: [testwifi/<no User-Password attribute>] (from client Cisco Aironet 1200 port 354 cli 0090.4b77.99a6)
Sending Access-Accept of id 162 to 192.168.2.220:21646
        MS-MPPE-Recv-Key = 0x910fdf897f8f042be203a7bcb10a1b89969b996f693ec40fd58d6172f55dee26
        MS-MPPE-Send-Key = 0x5bbe978c153970cf7fb7f7fb7863caf4c9525fedb850f85d1a02985a585544e0
        EAP-Message = 0x03080004
        Message-Authenticator = 0x00000000000000000000000000000000
        User-Name = "testwifi"
Finished request 6
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20050726/77cd78af/attachment.html>


More information about the Freeradius-Users mailing list