MAC auth won't work with SQL

tnt at kalik.net tnt at kalik.net
Tue Mar 31 23:11:12 CEST 2009


>Hi, I've setup two different Linux machines with FR and still can't get MAC
>authentication working with Calling-Station-Id in the radchk table. I've
>checked FAQ and have googled for hours. I've tried a hosted and local mySQL
>server.
>

If you only bothered looking at debug and configuration files for the
authentication method you are using. Outer request:

>rad_recv: Access-Request packet from host 192.168.0.1 port 41576, id=191,
>length=230
..
>        Calling-Station-Id = "00-1C-B3-B1-3E-07"
..

has that attribute in it, and inner request (user is authenticated in
inner tunnel):

>Sending tunneled request
>
>        EAP-Message =
>0x026c00491a026c00443177f318d460fc36f9cc77a41c0a4b3656000000000000000010538d
>55c2badfcc4a85b41f875a5521f978d255be29a7d20065676569657240736b796e657473
>
>        FreeRADIUS-Proxied-To = 127.0.0.1
>
>        User-Name = "egeier at skynets"
>
>        State = 0x8433f2b7845fe8463016d60fe5b8c67e

.. doesn't! You have a setting copy_request_to_tunnel in peap section
of eap.conf. Enable it.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list