EAP-Message help

Ahmet DÜLGAR dulgar at hotmail.com
Tue Sep 2 12:39:14 CEST 2008


hi,
iam using fedora 9 and freeradius 2.0.5 
i am new at freeradius
i configured freeradius by using wiki.freeradius.com howto wpa
and mysql connectin
everting is ok when test with radtest or NTRadPing it is working
then i create certificates by using make
/etc/raddb/certs/make
then configure eap.conf file
for the file paths
when i try to connect with phone
hp ipaq514 voice messenger with windows mobile 6 standart
it doesnt
the log is above
thanks for reply
best regards
 
 
 
Listening on authentication address * port 1812Listening on accounting address * port 1813Listening on proxy address * port 1814Ready to process requests.rad_recv: Access-Request packet from host 88.232.68.198 port 1812, id=2, length=75 User-Name = "fredf" Framed-MTU = 1400 NAS-Port-Type = Wireless-802.11 EAP-Message = 0x0201000a016672656466 NAS-IP-Address = 88.232.68.198 Message-Authenticator = 0x09b6f0b9f8e49b359324c6b6615b1f3c+- entering group authorize++[preprocess] returns ok++[chap] returns noop++[mschap] returns noop    rlm_realm: No '@' in User-Name = "fredf", looking up realm NULL    rlm_realm: No such realm "NULL"++[suffix] returns noop  rlm_eap: EAP packet type response id 1 length 10  rlm_eap: No EAP Start, assuming it's an on-going EAP conversation++[eap] returns updated++[unix] returns notfound++[files] returns noop expand: %{User-Name} -> fredfrlm_sql (sql): sql_set_user escaped user --> 'fredf'rlm_sql (sql): Reserving sql socket id: 4 expand: SELECT id, usern!
 ame, attribute, value, op           FROM radcheck           WHERE username = '%{SQL-User-Name}'           ORDER BY id -> SELECT id, username, attribute, value, op           FROM radcheck           WHERE username = 'fredf'           ORDER BY idrlm_sql (sql): User found in radcheck table expand: SELECT id, username, attribute, value, op           FROM radreply           WHERE username = '%{SQL-User-Name}'           ORDER BY id -> SELECT id, username, attribute, value, op           FROM radreply           WHERE username = 'fredf'           ORDER BY id expand: SELECT groupname           FROM radusergroup           WHERE username = '%{SQL-User-Name}'           ORDER BY priority -> SELECT groupname           FROM radusergroup           WHERE username = 'fredf'           ORDER BY priority expand: SELECT id, groupname, attribute,           Value, op           FROM radgroupcheck           WHERE groupname = '%{Sql-Group}'           ORDER BY id -> SELECT id, groupname, attribute,     !
       Value, op           FROM radgroupcheck           WHERE groupname
 = 'dynamic'           ORDER BY idrlm_sql (sql): User found in group dynamic expand: SELECT id, groupname, attribute,           value, op           FROM radgroupreply           WHERE groupname = '%{Sql-Group}'           ORDER BY id -> SELECT id, groupname, attribute,           value, op           FROM radgroupreply           WHERE groupname = 'dynamic'           ORDER BY idrlm_sql (sql): Released sql socket id: 4++[sql] returns ok++[expiration] returns noop++[logintime] returns nooprlm_pap: Found existing Auth-Type, not changing it.++[pap] returns noop  rad_check_password:  Found Auth-Type EAPauth: type "EAP"+- entering group authenticate  rlm_eap: EAP Identity  rlm_eap: processing type mschapv2rlm_eap_mschapv2: Issuing Challenge++[eap] returns handledSending Access-Challenge of id 2 to 88.232.68.198 port 1812 Framed-Compression := Van-Jacobson-TCP-IP Framed-Protocol := PPP Service-Type := Framed-User Framed-MTU := 1500 EAP-Message = 0x0102001f1a0102001a10b40f694adee6b042569!
 01467c86cedbe6672656466 Message-Authenticator = 0x00000000000000000000000000000000 State = 0x151d60e7151f7a949d0adc7c3820393aFinished request 0.Going to the next requestWaking up in 4.9 seconds.Cleaning up request 0 ID 2 with timestamp +70Ready to process requests.rad_recv: Access-Request packet from host 88.232.68.198 port 1812, id=3, length=89 User-Name = "fredf" Framed-MTU = 1400 NAS-Port-Type = Wireless-802.11 EAP-Message = 0x020200060319 State = 0x151d60e7151f7a949d0adc7c3820393a NAS-IP-Address = 88.232.68.198 Message-Authenticator = 0xc6b21f00eff9aef963a78417171ca381+- entering group authorize++[preprocess] returns ok++[chap] returns noop++[mschap] returns noop    rlm_realm: No '@' in User-Name = "fredf", looking up realm NULL    rlm_realm: No such realm "NULL"++[suffix] returns noop  rlm_eap: EAP packet type response id 2 length 6  rlm_eap: No EAP Start, assuming it's an on-going EAP conversation++[eap] returns updated++[unix] returns notfound++[files] returns noop e!
 xpand: %{User-Name} -> fredfrlm_sql (sql): sql_set_user escaped user -
-> 'fredf'rlm_sql (sql): Reserving sql socket id: 3 expand: SELECT id, username, attribute, value, op           FROM radcheck           WHERE username = '%{SQL-User-Name}'           ORDER BY id -> SELECT id, username, attribute, value, op           FROM radcheck           WHERE username = 'fredf'           ORDER BY idrlm_sql (sql): User found in radcheck table expand: SELECT id, username, attribute, value, op           FROM radreply           WHERE username = '%{SQL-User-Name}'           ORDER BY id -> SELECT id, username, attribute, value, op           FROM radreply           WHERE username = 'fredf'           ORDER BY id expand: SELECT groupname           FROM radusergroup           WHERE username = '%{SQL-User-Name}'           ORDER BY priority -> SELECT groupname           FROM radusergroup           WHERE username = 'fredf'           ORDER BY priority expand: SELECT id, groupname, attribute,           Value, op           FROM radgroupcheck           WHERE groupname = '%!
 {Sql-Group}'           ORDER BY id -> SELECT id, groupname, attribute,           Value, op           FROM radgroupcheck           WHERE groupname = 'dynamic'           ORDER BY idrlm_sql (sql): User found in group dynamic expand: SELECT id, groupname, attribute,           value, op           FROM radgroupreply           WHERE groupname = '%{Sql-Group}'           ORDER BY id -> SELECT id, groupname, attribute,           value, op           FROM radgroupreply           WHERE groupname = 'dynamic'           ORDER BY idrlm_sql (sql): Released sql socket id: 3++[sql] returns ok++[expiration] returns noop++[logintime] returns nooprlm_pap: Found existing Auth-Type, not changing it.++[pap] returns noop  rad_check_password:  Found Auth-Type EAPauth: type "EAP"+- entering group authenticate  rlm_eap: Request found, released from the list  rlm_eap: EAP NAK rlm_eap: EAP-NAK asked for EAP-Type/peap  rlm_eap: processing type tls  rlm_eap_tls: Initiate  rlm_eap_tls: Start returned 1++[eap!
 ] returns handledSending Access-Challenge of id 3 to 88.232.68.198 por
t 1812 Framed-Compression := Van-Jacobson-TCP-IP Framed-Protocol := PPP Service-Type := Framed-User Framed-MTU := 1500 EAP-Message = 0x010300061920 Message-Authenticator = 0x00000000000000000000000000000000 State = 0x151d60e7141e79949d0adc7c3820393aFinished request 1.Going to the next requestWaking up in 4.9 seconds.rad_recv: Access-Request packet from host 88.232.68.198 port 1812, id=4, length=161 User-Name = "fredf" Framed-MTU = 1400 NAS-Port-Type = Wireless-802.11 EAP-Message = 0x0203004e198000000044160301003f0100003b0301bcebeb91ed9bd986a195dfa0781baed40e796a4871993c1a42feee06af7ea3f2000014002f003500040005000a000900640062000300060100 State = 0x151d60e7141e79949d0adc7c3820393a NAS-IP-Address = 88.232.68.198 Message-Authenticator = 0xae29ddd04e13e00cacdff162e56eea29+- entering group authorize++[preprocess] returns ok++[chap] returns noop++[mschap] returns noop    rlm_realm: No '@' in User-Name = "fredf", looking up realm NULL    rlm_realm: No such realm "NULL"++[suffix] ret!
 urns noop  rlm_eap: EAP packet type response id 3 length 78  rlm_eap: Continuing tunnel setup.++[eap] returns ok  rad_check_password:  Found Auth-Type EAPauth: type "EAP"+- entering group authenticate  rlm_eap: Request found, released from the list  rlm_eap: EAP/peap  rlm_eap: processing type peap  rlm_eap_peap: Authenticate  rlm_eap_tls: processing TLS  TLS Length 68rlm_eap_tls:  Length Included  eaptls_verify returned 11     (other): before/accept initialization     TLS_accept: before/accept initialization   rlm_eap_tls: <<< TLS 1.0 Handshake [length 003f], ClientHello      TLS_accept: SSLv3 read client hello A   rlm_eap_tls: >>> TLS 1.0 Handshake [length 004a], ServerHello      TLS_accept: SSLv3 write server hello A   rlm_eap_tls: >>> TLS 1.0 Handshake [length 085e], Certificate      TLS_accept: SSLv3 write certificate A   rlm_eap_tls: >>> TLS 1.0 Handshake [length 0004], ServerHelloDone      TLS_accept: SSLv3 write server done A     TLS_accept: SSLv3 flush data     TLS_!
 accept: Need to read more data: SSLv3 read client certificate AIn SSL 
Handshake Phase In SSL Accept mode    eaptls_process returned 13   rlm_eap_peap: EAPTLS_HANDLED++[eap] returns handledSending Access-Challenge of id 4 to 88.232.68.198 port 1812 EAP-Message = 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 EAP-Message = 0x03131d4578616d706c6520436572746966696361746520417574686f72697479301e170d3038303832393135343335315a170d3039303832393135343335315a307c310b3009060355040613024652310f300d0603550408130652616469757331153013060355040a130c4578616d706c6520496e632e312330210603550403131a4578616d706c!
 65205365727665722043657274696669636174653120301e06092a864886f70d010901161161646d696e406578616d706c652e636f6d30820122300d06092a864886f70d01010105000382010f003082010a0282010100c8724bd3d2f8cba9064070ab59fd1da710b93549b417644dc713593bc315 EAP-Message = 0xc6ba9db08a4da00aaf0cf7d9d222022863c37f448b78f92ef83c6d41a2771077012b44d8fcc5ddbaa0b7fffe948f0740fb1e24be23c673fb880d2f404dbe1af965196f60e147a214bc99feee7d944af93394a5cd121062d624b9abcc2bb1486aaa06aff579692e5a1b7bff8a96646c2531dc205aa7611439cb21cbf1b9cbaa27e875f32a5f3a4f81127edec516f233b6872e70fa63960adf139f5cef9b9cb490c786ebc90971785f44860a4a984fd98c893710e5c52f552acb2da6f96629b7da18226632f71ff4f21e28afed4bb4eea260084732b818b85872bec32fa8fe37c355590203010001a317301530130603551d25040c300a06082b06010505 EAP-Message = 0x070301300d06092a864886f70d01010405000382010100bedb2fdc9f0b7b294c9ba9d2aa41ef62bebd926e5367f307a3dcf691dd15297fed8a02f3f1cfd27286512e8f097fb94f5ce7b038cf2b7a5e9666906ae0a46c81721c70a8b0769aa1ac56573dcbcc37c897749dbe!
 17c3fc9adc86fba01776ae9e8633e26dab5df3de503077e295f27d1fac9f0d04c2b724
f5ba8e0b160652cfceb90ae3327bddffc0ae9962becbcc4ae2859d708d52400b508acfd8ec3c7c944672daeb46e0ae1f5a07926a4f14b5f1815e724973fae1dd030703801a7f58f6cd1b87c8507e8d70bf104e7230d03cb49cfa11a6b1c30dca1ace6de6841e93e167e33f3f08878d EAP-Message = 0x40cfb1207782f80db36bf525 Message-Authenticator = 0x00000000000000000000000000000000 State = 0x151d60e7171979949d0adc7c3820393aFinished request 2.Going to the next requestWaking up in 4.7 seconds.rad_recv: Access-Request packet from host 88.232.68.198 port 1812, id=5, length=89 User-Name = "fredf" Framed-MTU = 1400 NAS-Port-Type = Wireless-802.11 EAP-Message = 0x020400061900 State = 0x151d60e7171979949d0adc7c3820393a NAS-IP-Address = 88.232.68.198 Message-Authenticator = 0x6895d55d69b15f1217c98df49dc9f7bb+- entering group authorize++[preprocess] returns ok++[chap] returns noop++[mschap] returns noop    rlm_realm: No '@' in User-Name = "fredf", looking up realm NULL    rlm_realm: No such realm "NULL"++[suffix] returns noop  rlm_eap: EAP packe!
 t type response id 4 length 6  rlm_eap: Continuing tunnel setup.++[eap] returns ok  rad_check_password:  Found Auth-Type EAPauth: type "EAP"+- entering group authenticate  rlm_eap: Request found, released from the list  rlm_eap: EAP/peap  rlm_eap: processing type peap  rlm_eap_peap: Authenticate  rlm_eap_tls: processing TLSrlm_eap_tls: Received EAP-TLS ACK message  rlm_eap_tls: ack handshake fragment handler  eaptls_verify returned 1   eaptls_process returned 13   rlm_eap_peap: EAPTLS_HANDLED++[eap] returns handledSending Access-Challenge of id 5 to 88.232.68.198 port 1812 EAP-Message = 0x010503fc1940afffeff3ca66f8c0d7ebff0ad54c0004ab308204a73082038fa003020102020900c2ea1bc473e970d6300d06092a864886f70d0101050500308193310b3009060355040613024652310f300d060355040813065261646975733112301006035504071309536f6d65776865726531153013060355040a130c4578616d706c6520496e632e3120301e06092a864886f70d010901161161646d696e406578616d706c652e636f6d312630240603550403131d4578616d706c65204365727469!
 66696361746520417574686f72697479301e170d3038303832393135343335315a170d
3038303932383135343335315a308193310b30090603 EAP-Message = 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 EAP-Message = 0x332d9e414225e89ea4b649b314946ca4768d3a7b512904a4e306055271a72c99fb11990c268a276e7ee4f14592e0ba5a43378cf8a6634b1d683306ce3942516c0e42e65530ff68c82b274f9db29ae2f1ce849144f41f8814413796c85bfe1847b762d566c4caeb8a49632ba75891509498c39b9bb6465cbc65cc4da7f7c61ca2c6854a36042733a832f787b54f8575e0a78e99f6ae9ae345a86669f7bfbeb0e51d915a56ce535c13855ca7c0d590214d910203010001a381fb3081f8301d0603551d0e041604145ed3fe3!
 86bcbd98a1b39d274a83c63fbd1d0e8543081c80603551d230481c03081bd80145ed3fe386bcbd98a1b39d274a83c63fbd1d0 EAP-Message = 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 EAP-Message = 0x9b46ebf107121ea6 Message-Authenticator = 0x00000000000000000000000000000000 State = 0x151d60e7161879949d0adc7c3820393aFinished request 3.Going to the next requestWaking up in 4.3 seconds.Cleaning up request 1 ID 3 with timestamp +100Waking up in 0.2 seconds.Cleaning up request 2 ID 4 with timestamp +100Waking up in 0.3 seconds.Cleaning up reques!
 t 3 ID 5 with timestamp +100Ready to process requests.
_________________________________________________________________
Yeni nesil Windows Live Services'ı ücretsiz edinin.
http://get.live.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20080902/88c986cf/attachment.html>


More information about the Freeradius-Users mailing list