Weird situation proxying accounting packets

Loris Fadda ronin at digitalronin.it
Thu Jul 28 18:03:44 CEST 2005


Hello guys,

We use freeradius on a Debian 3.1 system, I've created an hybrid distro using packets from the testing tree to use the FR release 1.0.4 (deb revision 2). This box needs to proxy both auth and acct requests to a customer server that runs Cisco ACS 2.6. The NAS is Cisco AS5300. 

Proxyied authentication requests are satisfyed correctly, while accounting requests are sent back with a "shared secret is incorrect" from the customer radius server.

Now, why if the secret is verified correctly on authentication I get this error on the accounting requests.
Have you ever seen something like this?

Notice that we checked out the secrets 10000 times and they match perfectly, also, in my proxy.conf as well as in the clients.conf(the equivalent on FR ... I donno what the hell ACS uses) of the customer the shared secret is defined just once, I mean the same directive "secret" is used both for auth and acct . 

Is there any library or dictionary issue I've missed to check?

Thanks for your attention any help will be really appreciated.

Loris 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20050728/6ee68e01/attachment.pgp>


More information about the Freeradius-Users mailing list