Problem with MSCHAP when migrating from freeradius2 to freeradius3
koehne
koehne at mdw.ac.at
Mon Feb 4 10:22:04 CET 2019
Hello,
I´ve now spent so much time on troubleshooting, testing and searching
for hints in the internet, I hope someone here from this mailing-list
can support me.
We are using freeradius to authenticate CLI-Access to Network-Devices,
VPN-Access and WLAN-Access. As User-Database we are using Novell
eDirectory via LDAP.
I want to migrate from freeradius2 to freeradius3 on a new server.
I´ve allready succeeded with migrating Network-CLI- and VPN-Access,
however WLAN-Access is not working.
These are the significant messages from the DEBUG saying "*mschap: No
Cleartext-Password configured*".
...
Executing group from file /etc/raddb/sites-enabled/inner-tunnel
Fri Feb 1 10:18:31 2019 : Debug: (8) eap_mschapv2: authenticate {
Fri Feb 1 10:18:31 2019 : Debug: (8) eap_mschapv2:
modsingle[authenticate]: calling mschap (rlm_mschap)
*Fri Feb 1 10:18:31 2019 : WARNING: (8) mschap: No Cleartext-Password
configured. Cannot create NT-Password
Fri Feb 1 10:18:31 2019 : WARNING: (8) mschap: No Cleartext-Password
configured. Cannot create LM-Password*
Fri Feb 1 10:18:31 2019 : Debug: (8) mschap: Creating challenge hash
with username: koehne
Fri Feb 1 10:18:31 2019 : Debug: (8) mschap: Client is using MS-CHAPv2
Fri Feb 1 10:18:31 2019 : ERROR: (8) mschap: FAILED: No NT/LM-Password.
Cannot perform authentication
...
Enclosed is a full debug.
I´ve compared "old" and "new" configuration of the relevant modules
several times and adapted the necessary changes in the configuration
from freeradius2 to freeradius3.
Here are the configs of the virtual-server and the ldap module:
server mdwwlan {
listen {
....
}
}
authorize {
filter_username
preprocess
auth_log
detail
suffix
files
-ldap
eap {
ok = return
}
Autz-Type LDAP {
mdwacc_wlan
mschap
update {
&MS-CHAP-User-Name := "%{mschap:User-Name}"
}
}
}
authenticate {
Auth-Type MSCHAP {
mschap
}
eap
}
}
ldap mdwacc_wlan {
server = "ldap.mdw.ac.at"
port = 636
identity = "cn=ldap_radius,o=MDWds"
password = frtz56uit33
basedn = "o=MDWds"
access_attr = "mdwaccAllowwlan"
filter = "(cn=%{%{Stripped-User-Name}:-%{User-Name}})"
update {
control:NT-Password := 'mdwaccPwwlan'
}
edir_autz = yes
user {
basedn = "o=MDWds"
filter = "(cn=%{%{Stripped-User-Name}:-%{User-Name}})"
scope = 'sub'
access_attr = 'mdwaccAllowwlan'
}
group {
basedn = "o=MDWds"
filter = "(cn=%{%{Stripped-User-Name}:-%{User-Name}})"
scope = 'sub'
membership_attribute = 'radiusGroupName'
}
options {
timeout = 4
srv_timelimit = 3
net_timeout = 1
}
tls {
start_tls = no
}
pool {
start = ${thread[pool].start_servers}
min = ${thread[pool].min_spare_servers}
max = ${thread[pool].max_servers}
uses = 0
lifetime = 0
}
}
And the "users" File:
DEFAULT Huntgroup-Name == WISM, Autz-Type := LDAP
Fall-Through = yes
Do you have any hints for me, what could be missing or wrong in my
configuration of version 3?
Thank You!!
Best Regards
Ronald
-------------- next part --------------
radius3:/etc/raddb/sites-enabled # radiusd -XX
Thu Jan 31 16:49:59 2019 : Debug: Server was built with:
Thu Jan 31 16:49:59 2019 : Debug: accounting : yes
Thu Jan 31 16:49:59 2019 : Debug: authentication : yes
Thu Jan 31 16:49:59 2019 : Debug: ascend-binary-attributes : yes
Thu Jan 31 16:49:59 2019 : Debug: coa : yes
Thu Jan 31 16:49:59 2019 : Debug: control-socket : yes
Thu Jan 31 16:49:59 2019 : Debug: detail : yes
Thu Jan 31 16:49:59 2019 : Debug: dhcp : yes
Thu Jan 31 16:49:59 2019 : Debug: dynamic-clients : yes
Thu Jan 31 16:49:59 2019 : Debug: osfc2 : no
Thu Jan 31 16:49:59 2019 : Debug: proxy : yes
Thu Jan 31 16:49:59 2019 : Debug: regex-pcre : no
Thu Jan 31 16:49:59 2019 : Debug: regex-posix : yes
Thu Jan 31 16:49:59 2019 : Debug: regex-posix-extended : yes
Thu Jan 31 16:49:59 2019 : Debug: session-management : yes
Thu Jan 31 16:49:59 2019 : Debug: stats : yes
Thu Jan 31 16:49:59 2019 : Debug: tcp : yes
Thu Jan 31 16:49:59 2019 : Debug: threads : yes
Thu Jan 31 16:49:59 2019 : Debug: tls : yes
Thu Jan 31 16:49:59 2019 : Debug: unlang : yes
Thu Jan 31 16:49:59 2019 : Debug: vmps : yes
Thu Jan 31 16:49:59 2019 : Debug: developer : no
Thu Jan 31 16:49:59 2019 : Debug: Server core libs:
Thu Jan 31 16:49:59 2019 : Debug: freeradius-server : 3.0.15
Thu Jan 31 16:49:59 2019 : Debug: talloc : 2.1.*
Thu Jan 31 16:49:59 2019 : Debug: ssl : 1.0.2j release
Thu Jan 31 16:49:59 2019 : Debug: Endianness:
Thu Jan 31 16:49:59 2019 : Debug: little
Thu Jan 31 16:49:59 2019 : Debug: Compilation flags:
Thu Jan 31 16:49:59 2019 : Debug: cppflags :
Thu Jan 31 16:49:59 2019 : Debug: cflags : -I. -Isrc -include src/freeradius-devel/autoconf.h -include src/freeradius-devel/build.h -include src/freeradius-devel/features.h -include src/freeradius-devel/radpaths.h -fno-strict-aliasing -fmessage-length=0 -grecord-gcc-switches -fstack-protector -O2 -Wall -D_FORTIFY_SOURCE=2 -funwind-tables -fasynchronous-unwind-tables -g -DLDAP_DEPRECATED -fstack-protector -fPIC -DPIC -Wall -std=c99 -D_GNU_SOURCE -D_REENTRANT -D_POSIX_PTHREAD_SEMANTICS -DOPENSSL_NO_KRB5 -DNDEBUG -DIS_MODULE=1
Thu Jan 31 16:49:59 2019 : Debug: ldflags : -pie
Thu Jan 31 16:49:59 2019 : Debug: libs : -lcrypto -lssl -ltalloc -lnsl -lresolv -ldl -lpthread
Thu Jan 31 16:49:59 2019 : Debug:
Thu Jan 31 16:49:59 2019 : Info: FreeRADIUS Version 3.0.15
Thu Jan 31 16:49:59 2019 : Info: Copyright (C) 1999-2017 The FreeRADIUS server project and contributors
Thu Jan 31 16:49:59 2019 : Info: There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A
Thu Jan 31 16:49:59 2019 : Info: PARTICULAR PURPOSE
Thu Jan 31 16:49:59 2019 : Info: You may redistribute copies of FreeRADIUS under the terms of the
Thu Jan 31 16:49:59 2019 : Info: GNU General Public License
Thu Jan 31 16:49:59 2019 : Info: For more information about these matters, see the file named COPYRIGHT
Thu Jan 31 16:49:59 2019 : Info: Starting - reading configuration files ...
Thu Jan 31 16:49:59 2019 : Debug: including dictionary file /usr/share/freeradius/dictionary
Thu Jan 31 16:49:59 2019 : Debug: including dictionary file /usr/share/freeradius/dictionary.dhcp
Thu Jan 31 16:49:59 2019 : Debug: including dictionary file /usr/share/freeradius/dictionary.vqp
Thu Jan 31 16:49:59 2019 : Debug: including dictionary file /etc/raddb/dictionary
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/radiusd.conf
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/proxy.conf
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/clients.conf
Thu Jan 31 16:49:59 2019 : Debug: including files in directory /etc/raddb/mods-enabled/
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/cache_eap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/chap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/date
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/detail
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/dhcp
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/digest
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/dynamic_clients
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/eap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/echo
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/exec
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/expiration
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/expr
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/files
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/linelog
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/logintime
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/mschap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/ntlm_auth
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/pap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/passwd
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/preprocess
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/radutmp
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/replicate
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/soh
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/sradutmp
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/unix
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/unpack
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/utf8
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/mods-enabled/ldap
Thu Jan 31 16:49:59 2019 : Debug: including files in directory /etc/raddb/policy.d/
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/abfab-tr
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/accounting
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/canonicalization
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/control
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/cui
Thu Jan 31 16:49:59 2019 : Debug: OPTIMIZING (${policy.cui_require_operator_name} == yes) --> FALSE
Thu Jan 31 16:49:59 2019 : Debug: OPTIMIZING (no == yes) --> FALSE
Thu Jan 31 16:49:59 2019 : Debug: OPTIMIZING (${policy.cui_require_operator_name} == yes) --> FALSE
Thu Jan 31 16:49:59 2019 : Debug: OPTIMIZING (no == yes) --> FALSE
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/debug
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/dhcp
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/eap
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/filter
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/moonshot-targeted-ids
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/policy.d/operator-name
Thu Jan 31 16:49:59 2019 : Debug: including files in directory /etc/raddb/sites-enabled/
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/sites-enabled/default
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:49:59 2019 : Debug: including configuration file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:49:59 2019 : Debug: main {
Thu Jan 31 16:49:59 2019 : Debug: security {
Thu Jan 31 16:49:59 2019 : Debug: allow_core_dumps = no
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[425]: The item 'max_attributes' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[443]: The item 'reject_delay' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[463]: The item 'status_server' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: name = "radiusd"
Thu Jan 31 16:49:59 2019 : Debug: prefix = "/usr"
Thu Jan 31 16:49:59 2019 : Debug: localstatedir = "/var"
Thu Jan 31 16:49:59 2019 : Debug: logdir = "/var/log/radius"
Thu Jan 31 16:49:59 2019 : Debug: run_dir = "/var/run/radiusd"
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[54]: The item 'exec_prefix' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[67]: The item 'confdir' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[74]: The item 'db_dir' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[108]: The item 'libdir' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[119]: The item 'pidfile' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[140]: The item 'correct_escapes' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[194]: The item 'max_request_time' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[213]: The item 'cleanup_delay' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[250]: The item 'hostname_lookups' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[335]: The item 'checkrad' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[484]: The item 'proxy_requests' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: main {
Thu Jan 31 16:49:59 2019 : Debug: name = "radiusd"
Thu Jan 31 16:49:59 2019 : Debug: prefix = "/usr"
Thu Jan 31 16:49:59 2019 : Debug: localstatedir = "/var"
Thu Jan 31 16:49:59 2019 : Debug: sbindir = "/usr/sbin"
Thu Jan 31 16:49:59 2019 : Debug: logdir = "/var/log/radius"
Thu Jan 31 16:49:59 2019 : Debug: run_dir = "/var/run/radiusd"
Thu Jan 31 16:49:59 2019 : Debug: libdir = "/usr/lib64/freeradius"
Thu Jan 31 16:49:59 2019 : Debug: radacctdir = "/var/log/radius/radacct"
Thu Jan 31 16:49:59 2019 : Debug: hostname_lookups = no
Thu Jan 31 16:49:59 2019 : Debug: max_request_time = 30
Thu Jan 31 16:49:59 2019 : Debug: cleanup_delay = 5
Thu Jan 31 16:49:59 2019 : Debug: max_requests = 16384
Thu Jan 31 16:49:59 2019 : Debug: pidfile = "/var/run/radiusd/radiusd.pid"
Thu Jan 31 16:49:59 2019 : Debug: checkrad = "/usr/sbin/checkrad"
Thu Jan 31 16:49:59 2019 : Debug: debug_level = 0
Thu Jan 31 16:49:59 2019 : Debug: proxy_requests = yes
Thu Jan 31 16:49:59 2019 : Debug: log {
Thu Jan 31 16:49:59 2019 : Debug: stripped_names = no
Thu Jan 31 16:49:59 2019 : Debug: auth = yes
Thu Jan 31 16:49:59 2019 : Debug: auth_badpass = no
Thu Jan 31 16:49:59 2019 : Debug: auth_goodpass = no
Thu Jan 31 16:49:59 2019 : Debug: colourise = yes
Thu Jan 31 16:49:59 2019 : Debug: msg_denied = "You are already logged in - access denied"
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[268]: The item 'destination' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[285]: The item 'file' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[286]: The item 'file' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[294]: The item 'syslog_facility' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: resources {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: security {
Thu Jan 31 16:49:59 2019 : Debug: max_attributes = 200
Thu Jan 31 16:49:59 2019 : Debug: reject_delay = 1.000000
Thu Jan 31 16:49:59 2019 : Debug: status_server = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[54]: The item 'exec_prefix' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[67]: The item 'confdir' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[74]: The item 'db_dir' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/radiusd.conf[140]: The item 'correct_escapes' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: radiusd: #### Loading Realms and Home Servers ####
Thu Jan 31 16:49:59 2019 : Debug: proxy server {
Thu Jan 31 16:49:59 2019 : Debug: retry_delay = 5
Thu Jan 31 16:49:59 2019 : Debug: retry_count = 3
Thu Jan 31 16:49:59 2019 : Debug: default_fallback = no
Thu Jan 31 16:49:59 2019 : Debug: dead_time = 120
Thu Jan 31 16:49:59 2019 : Debug: wake_all_if_all_dead = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server localhost {
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 127.0.0.1
Thu Jan 31 16:49:59 2019 : Debug: port = 1812
Thu Jan 31 16:49:59 2019 : Debug: type = "auth"
Thu Jan 31 16:49:59 2019 : Debug: secret = "testing123"
Thu Jan 31 16:49:59 2019 : Debug: response_window = 20.000000
Thu Jan 31 16:49:59 2019 : Debug: response_timeouts = 1
Thu Jan 31 16:49:59 2019 : Debug: max_outstanding = 65536
Thu Jan 31 16:49:59 2019 : Debug: zombie_period = 40
Thu Jan 31 16:49:59 2019 : Debug: status_check = "status-server"
Thu Jan 31 16:49:59 2019 : Debug: ping_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: check_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: check_timeout = 4
Thu Jan 31 16:49:59 2019 : Debug: num_answers_to_alive = 3
Thu Jan 31 16:49:59 2019 : Debug: revive_interval = 120
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: max_requests = 0
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 0
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: coa {
Thu Jan 31 16:49:59 2019 : Debug: irt = 2
Thu Jan 31 16:49:59 2019 : Debug: mrt = 16
Thu Jan 31 16:49:59 2019 : Debug: mrc = 5
Thu Jan 31 16:49:59 2019 : Debug: mrd = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server aconet1 {
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 193.170.140.130
Thu Jan 31 16:49:59 2019 : Debug: port = 1812
Thu Jan 31 16:49:59 2019 : Debug: type = "auth+acct"
Thu Jan 31 16:49:59 2019 : Debug: secret = "3coGqdBrs1"
Thu Jan 31 16:49:59 2019 : Debug: response_window = 20.000000
Thu Jan 31 16:49:59 2019 : Debug: response_timeouts = 1
Thu Jan 31 16:49:59 2019 : Debug: max_outstanding = 65536
Thu Jan 31 16:49:59 2019 : Debug: zombie_period = 40
Thu Jan 31 16:49:59 2019 : Debug: status_check = "status-server"
Thu Jan 31 16:49:59 2019 : Debug: ping_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: check_timeout = 4
Thu Jan 31 16:49:59 2019 : Debug: num_answers_to_alive = 3
Thu Jan 31 16:49:59 2019 : Debug: revive_interval = 300
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: max_requests = 0
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 0
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: coa {
Thu Jan 31 16:49:59 2019 : Debug: irt = 2
Thu Jan 31 16:49:59 2019 : Debug: mrt = 16
Thu Jan 31 16:49:59 2019 : Debug: mrc = 5
Thu Jan 31 16:49:59 2019 : Debug: mrd = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server aconet2 {
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 193.171.255.82
Thu Jan 31 16:49:59 2019 : Debug: port = 1812
Thu Jan 31 16:49:59 2019 : Debug: type = "auth+acct"
Thu Jan 31 16:49:59 2019 : Debug: secret = "3coGqdBrs1"
Thu Jan 31 16:49:59 2019 : Debug: response_window = 20.000000
Thu Jan 31 16:49:59 2019 : Debug: response_timeouts = 1
Thu Jan 31 16:49:59 2019 : Debug: max_outstanding = 65536
Thu Jan 31 16:49:59 2019 : Debug: zombie_period = 40
Thu Jan 31 16:49:59 2019 : Debug: status_check = "status-server"
Thu Jan 31 16:49:59 2019 : Debug: ping_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: check_timeout = 4
Thu Jan 31 16:49:59 2019 : Debug: num_answers_to_alive = 3
Thu Jan 31 16:49:59 2019 : Debug: revive_interval = 300
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: max_requests = 0
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 0
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: coa {
Thu Jan 31 16:49:59 2019 : Debug: irt = 2
Thu Jan 31 16:49:59 2019 : Debug: mrt = 16
Thu Jan 31 16:49:59 2019 : Debug: mrc = 5
Thu Jan 31 16:49:59 2019 : Debug: mrd = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server_pool my_auth_failover {
Thu Jan 31 16:49:59 2019 : Debug: type = fail-over
Thu Jan 31 16:49:59 2019 : Debug: home_server = localhost
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm example.com {
Thu Jan 31 16:49:59 2019 : Debug: auth_pool = my_auth_failover
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm LOCAL {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm LOCAL {
Thu Jan 31 16:49:59 2019 : Debug: } # realm LOCAL
Thu Jan 31 16:49:59 2019 : Debug: realm NULL {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm mdw.ac.at {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm ~^.*\\.mdw\\.ac\\.at$ {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server_pool eduroam {
Thu Jan 31 16:49:59 2019 : Debug: type = fail-over
Thu Jan 31 16:49:59 2019 : Debug: home_server = aconet1
Thu Jan 31 16:49:59 2019 : Debug: home_server = aconet2
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: realm DEFAULT {
Thu Jan 31 16:49:59 2019 : Debug: pool = eduroam
Thu Jan 31 16:49:59 2019 : Debug: nostrip
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: home_server_pool mdw {
Thu Jan 31 16:49:59 2019 : Debug: home_server = localhost
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: radiusd: #### Loading Clients ####
Thu Jan 31 16:49:59 2019 : Debug: client localhost {
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 127.0.0.1
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "testing123"
Thu Jan 31 16:49:59 2019 : Debug: nas_type = "other"
Thu Jan 31 16:49:59 2019 : Debug: proto = "*"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 127.0.0.1/32 (127.0.0.1) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client hermann {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 193.170.214.164
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "rucksack"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 193.170.214.164/32 (193.170.214.164) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client itc {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 193.170.214.135
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "bittemeldedich"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 193.170.214.135/32 (193.170.214.135) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client aw-wism {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.1.150.240
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "wl87rtzu34fof4wvtrgm"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.150.240/32 (10.1.150.240) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.250.250.0/24
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003::/64 (2001:628:2003::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-AW {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.1.1.0/24
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:110::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:110::/64 (2001:628:2003:110::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-LS {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.2.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:120::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:120::/64 (2001:628:2003:120::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-RW {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.3.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:130::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:130::/64 (2001:628:2003:130::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-P79 {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.4.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:140::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:140::/64 (2001:628:2003:140::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-S1 {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.5.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:150::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:150::/64 (2001:628:2003:150::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-M12 {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.7.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:170::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:170::/64 (2001:628:2003:170::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-RG {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.12.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.12.1.128/25 (10.12.1.128) to prefix tree 25
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-SI {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.13.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: ipv6addr = 2001:628:2003:1D0::/64
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:1d0::/64 (2001:628:2003:1d0::) to prefix tree 64
Thu Jan 31 16:49:59 2019 : Debug: client NW-Devices-RS {
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 10.15.1.128/25
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.15.1.128/25 (10.15.1.128) to prefix tree 25
Thu Jan 31 16:49:59 2019 : Debug: client 10.1.200.4 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "VPN1"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 10.1.200.4. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.200.4/32 (10.1.200.4) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client 10.1.200.5 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "VPN2"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 10.1.200.5. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.200.5/32 (10.1.200.5) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client 10.1.199.40 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 10.1.199.40. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.199.40/32 (10.1.199.40) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client 10.1.199.41 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN1"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 10.1.199.41. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.199.41/32 (10.1.199.41) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client 10.1.199.42 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN2"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 10.1.199.42. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 10.1.199.42/32 (10.1.199.42) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client 2001:628:2003:100::40 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 2001:628:2003:100::40. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:100::40/128 (2001:628:2003:100::40) to prefix tree 128
Thu Jan 31 16:49:59 2019 : Debug: client 2001:628:2003:100::41 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN1"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 2001:628:2003:100::41. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:100::41/128 (2001:628:2003:100::41) to prefix tree 128
Thu Jan 31 16:49:59 2019 : Debug: client 2001:628:2003:100::42 {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "ccie4712phse"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "F5VPN2"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client 2001:628:2003:100::42. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 2001:628:2003:100::42/128 (2001:628:2003:100::42) to prefix tree 128
Thu Jan 31 16:49:59 2019 : Debug: client eduroam1.aco.net {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "3coGqdBrs1"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "edu1-aconet"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client eduroam1.aco.net. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 193.170.140.130/32 (eduroam1.aco.net) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Debug: client eduroam2.aco.net {
Thu Jan 31 16:49:59 2019 : Debug: require_message_authenticator = no
Thu Jan 31 16:49:59 2019 : Debug: secret = "3coGqdBrs1"
Thu Jan 31 16:49:59 2019 : Debug: shortname = "edu2-aconet"
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: No 'ipaddr' or 'ipv4addr' or 'ipv6addr' field found in client eduroam2.aco.net. Please fix your configuration
Thu Jan 31 16:49:59 2019 : Warning: Support for old-style clients will be removed in a future release
Thu Jan 31 16:49:59 2019 : Debug: Adding client 193.171.255.82/32 (eduroam2.aco.net) to prefix tree 32
Thu Jan 31 16:49:59 2019 : Info: Debugger not attached
Thu Jan 31 16:49:59 2019 : Debug: # Creating Auth-Type = mschap
Thu Jan 31 16:49:59 2019 : Debug: # Creating Auth-Type = eap
Thu Jan 31 16:49:59 2019 : Debug: # Creating Auth-Type = PAP
Thu Jan 31 16:49:59 2019 : Debug: # Creating Auth-Type = CHAP
Thu Jan 31 16:49:59 2019 : Debug: # Creating Auth-Type = MS-CHAP
Thu Jan 31 16:49:59 2019 : Debug: # Creating Autz-Type = LDAP
Thu Jan 31 16:49:59 2019 : Debug: radiusd: #### Instantiating modules ####
Thu Jan 31 16:49:59 2019 : Debug: modules {
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_always with path: /usr/lib64/freeradius/rlm_always.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_always, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_always
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "reject" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always reject {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "reject"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "fail" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always fail {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "fail"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "ok" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always ok {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "ok"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "handled" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always handled {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "handled"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "invalid" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always invalid {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "invalid"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "userlock" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always userlock {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "userlock"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "notfound" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always notfound {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "notfound"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "noop" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always noop {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "noop"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "updated" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: always updated {
Thu Jan 31 16:49:59 2019 : Debug: rcode = "updated"
Thu Jan 31 16:49:59 2019 : Debug: simulcount = 0
Thu Jan 31 16:49:59 2019 : Debug: mpp = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_attr_filter with path: /usr/lib64/freeradius/rlm_attr_filter.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_attr_filter, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_attr_filter
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "attr_filter.post-proxy" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: attr_filter attr_filter.post-proxy {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/attr_filter/post-proxy"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{Realm}"
Thu Jan 31 16:49:59 2019 : Debug: relaxed = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "attr_filter.pre-proxy" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: attr_filter attr_filter.pre-proxy {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/attr_filter/pre-proxy"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{Realm}"
Thu Jan 31 16:49:59 2019 : Debug: relaxed = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "attr_filter.access_reject" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: attr_filter attr_filter.access_reject {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/attr_filter/access_reject"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: relaxed = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "attr_filter.access_challenge" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: attr_filter attr_filter.access_challenge {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/attr_filter/access_challenge"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: relaxed = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "attr_filter.accounting_response" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: attr_filter attr_filter.accounting_response {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/attr_filter/accounting_response"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: relaxed = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_cache with path: /usr/lib64/freeradius/rlm_cache.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_cache, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_cache
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "cache_eap" from file /etc/raddb/mods-enabled/cache_eap
Thu Jan 31 16:49:59 2019 : Debug: cache cache_eap {
Thu Jan 31 16:49:59 2019 : Debug: driver = "rlm_cache_rbtree"
Thu Jan 31 16:49:59 2019 : Debug: key = "%{%{control:State}:-%{%{reply:State}:-%{State}}}"
Thu Jan 31 16:49:59 2019 : Debug: ttl = 15
Thu Jan 31 16:49:59 2019 : Debug: max_entries = 0
Thu Jan 31 16:49:59 2019 : Debug: epoch = 0
Thu Jan 31 16:49:59 2019 : Debug: add_stats = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_chap with path: /usr/lib64/freeradius/rlm_chap.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_chap, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_chap
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "chap" from file /etc/raddb/mods-enabled/chap
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_date with path: /usr/lib64/freeradius/rlm_date.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_date, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_date
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "date" from file /etc/raddb/mods-enabled/date
Thu Jan 31 16:49:59 2019 : Debug: date {
Thu Jan 31 16:49:59 2019 : Debug: format = "%b %e %Y %H:%M:%S %Z"
Thu Jan 31 16:49:59 2019 : Debug: utc = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_detail with path: /usr/lib64/freeradius/rlm_detail.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_detail, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_detail
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "detail" from file /etc/raddb/mods-enabled/detail
Thu Jan 31 16:49:59 2019 : Debug: detail {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d"
Thu Jan 31 16:49:59 2019 : Debug: header = "%t"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: locking = no
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: log_packet_header = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "auth_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: detail auth_log {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d"
Thu Jan 31 16:49:59 2019 : Debug: header = "%t"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: locking = no
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: log_packet_header = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "reply_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: detail reply_log {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/reply-detail-%Y%m%d"
Thu Jan 31 16:49:59 2019 : Debug: header = "%t"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: locking = no
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: log_packet_header = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "pre_proxy_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: detail pre_proxy_log {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/pre-proxy-detail-%Y%m%d"
Thu Jan 31 16:49:59 2019 : Debug: header = "%t"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: locking = no
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: log_packet_header = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "post_proxy_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: detail post_proxy_log {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/post-proxy-detail-%Y%m%d"
Thu Jan 31 16:49:59 2019 : Debug: header = "%t"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: locking = no
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: log_packet_header = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_dhcp with path: /usr/lib64/freeradius/rlm_dhcp.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_dhcp, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_dhcp
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "dhcp" from file /etc/raddb/mods-enabled/dhcp
Thu Jan 31 16:49:59 2019 : Debug: Adding values for DHCP-Parameter-Request-List
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 1 DHCP-Subnet-Mask
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 2 DHCP-Time-Offset
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 3 DHCP-Router-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 4 DHCP-Time-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 5 DHCP-IEN-116-Name-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 6 DHCP-Domain-Name-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 7 DHCP-Log-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 8 DHCP-Quotes-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 9 DHCP-LPR-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 10 DHCP-Impress-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 11 DHCP-RLP-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 12 DHCP-Hostname
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 13 DHCP-Boot-File-Size
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 14 DHCP-Merit-Dump-File
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 15 DHCP-Domain-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 16 DHCP-Swap-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 17 DHCP-Root-Path
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 18 DHCP-Bootp-Extensions-Path
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 19 DHCP-IP-Forward-Enable
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 20 DHCP-Source-Route-Enable
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 21 DHCP-Policy-Filter
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 22 DHCP-Max-Datagram-Reassembly-Size
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 23 DHCP-Default-IP-TTL
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 24 DHCP-Path-MTU-Aging-Timeout
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 25 DHCP-Path-MTU-Plateau-Table
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 26 DHCP-Interface-MTU-Size
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 27 DHCP-All-Subnets-Are-Local
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 28 DHCP-Broadcast-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 29 DHCP-Perform-Mask-Discovery
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 30 DHCP-Provide-Mask-To-Others
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 31 DHCP-Perform-Router-Discovery
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 32 DHCP-Router-Solicitation-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 33 DHCP-Static-Routes
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 34 DHCP-Trailer-Encapsulation
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 35 DHCP-ARP-Cache-Timeout
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 36 DHCP-Ethernet-Encapsulation
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 37 DHCP-Default-TCP-TTL
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 38 DHCP-Keep-Alive-Interval
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 39 DHCP-Keep-Alive-Garbage
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 40 DHCP-NIS-Domain-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 41 DHCP-NIS-Servers
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 42 DHCP-NTP-Servers
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 43 DHCP-Vendor
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 44 DHCP-NETBIOS-Name-Servers
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 45 DHCP-NETBIOS-Dgm-Dist-Servers
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 46 DHCP-NETBIOS-Node-Type
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 47 DHCP-NETBIOS
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 48 DHCP-X-Window-Font-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 49 DHCP-X-Window-Display-Mgr
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 50 DHCP-Requested-IP-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 51 DHCP-IP-Address-Lease-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 52 DHCP-Overload
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 53 DHCP-Message-Type
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 54 DHCP-DHCP-Server-Identifier
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 55 DHCP-Parameter-Request-List
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 56 DHCP-DHCP-Error-Message
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 57 DHCP-DHCP-Maximum-Msg-Size
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 58 DHCP-Renewal-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 59 DHCP-Rebinding-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 60 DHCP-Vendor-Class-Identifier
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 61 DHCP-Client-Identifier
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 62 DHCP-Netware-Domain-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 63 DHCP-Netware-Sub-Options
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 64 DHCP-NIS-Client-Domain-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 65 DHCP-NIS-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 66 DHCP-TFTP-Server-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 67 DHCP-Boot-File-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 68 DHCP-Home-Agent-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 69 DHCP-SMTP-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 70 DHCP-POP3-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 71 DHCP-NNTP-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 72 DHCP-WWW-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 73 DHCP-Finger-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 74 DHCP-IRC-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 75 DHCP-StreetTalk-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 76 DHCP-STDA-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 77 DHCP-User-Class
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 78 DHCP-Directory-Agent
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 79 DHCP-Service-Scope
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 80 DHCP-Rapid-Commit
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 81 DHCP-Client-FQDN
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 82 DHCP-Relay-Agent-Information
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 83 DHCP-iSNS
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 84
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 85 DHCP-NDS-Servers
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 86 DHCP-NDS-Tree-Name
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 87 DHCP-NDS-Context
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 88 DHCP-BCMS-Server-IPv4-FQDN
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 89 DHCP-BCMS-Server-IPv4-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 90 DHCP-Authentication
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 91 DHCP-Client-Last-Txn-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 92 DHCP-associated-ip
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 93 DHCP-Client-System
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 94 DHCP-Client-NDI
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 95 DHCP-LDAP
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 96
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 97 DHCP-UUID/GUID
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 98 DHCP-User-Auth
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 99 DHCP-GeoConf-Civic
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 100 DHCP-Timezone-Posix
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 101 DHCP-Timezone-Database
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 102
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 103
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 104
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 105
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 106
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 107
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 108
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 109
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 110
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 111
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 112 DHCP-Netinfo-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 113 DHCP-Netinfo-Tag
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 114 DHCP-URL
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 115
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 116 DHCP-Auto-Config
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 117 DHCP-Name-Service-Search
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 118 DHCP-Subnet-Selection-Option
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 119 DHCP-Domain-Search
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 120 DHCP-SIP-Servers-DHCP-Option
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 121 DHCP-Classless-Static-Route
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 122 DHCP-CCC
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 123 DHCP-GeoConf-Option
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 124 DHCP-V-I-Vendor-Class
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 125 DHCP-V-I-Vendor-Specific
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 126
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 127
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 128 DHCP-TFTP-Server-IP-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 129 DHCP-Call-Server-IP-address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 130 DHCP-Vendor-Discrimination-Str
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 131 DHCP-Remote-Stats-Svr-IP-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 132 DHCP-IEEE-802.1Q-VLAN-ID
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 133 DHCP-IEEE-802.1P-L2-Priority
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 134 DHCP-Diffserv-Code-Point
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 135 DHCP-HTTP-Proxy
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 136 DHCP-PANA-Agent
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 137 DHCP-LoST-Server
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 138 DHCP-CAPWAP-AC-IPv4-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 139 DHCP-MoS-IPv4-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 140 DHCP-MoS-IPv4-FQDN
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 141 DHCP-SIP-UA-Configuration-Service-Domains
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 142 DHCP-ANDSF-IPv4-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 143 DHCP-ANDSF-IPv6-Address
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 144
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 145
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 146
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 147
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 148
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 149
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 150 DHCP-TFTP-Server-IPv4-Address
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 151 DHCP-Query-Status-Code
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 152 DHCP-Query-Server-Base-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 153 DHCP-Query-Start-Time-Of-State
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 154 DHCP-Query-Start-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 155 DHCP-Query-End-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 156 DHCP-State
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 157 DHCP-Data-Source
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 158 DHCP-PCP-IPv4-Server-Address
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 159
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 160
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 161
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 162
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 163
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 164
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 165
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 166
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 167
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 168
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 169
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 170
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 171
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 172
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 173
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 174
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 175
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 176
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 177
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 178
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 179
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 180
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 181
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 182
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 183
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 184
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 185
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 186
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 187
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 188
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 189
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 190
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 191
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 192
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 193
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 194
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 195
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 196
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 197
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 198
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 199
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 200
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 201
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 202
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 203
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 204
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 205
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 206
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 207
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 208 DHCP-PXELINUX-Magic
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 209 DHCP-Packet-Format
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 210 DHCP-Path-Prefix
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 211 DHCP-Reboot-Time
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 212 DHCP-6RD
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 213 DHCP-Access-Network-Domain-Name
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 214
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 215
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 216
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 217
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 218
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 219
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 220 DHCP-Virtual-Subnet-Allocation
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 221 DHCP-Virtual-Subnet-Selection
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 222
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 223
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 224 DHCP-Site-specific-0
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 225 DHCP-Site-specific-1
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 226 DHCP-Site-specific-2
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 227 DHCP-Site-specific-3
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 228 DHCP-Site-specific-4
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 229 DHCP-Site-specific-5
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 230 DHCP-Site-specific-6
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 231 DHCP-Site-specific-7
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 232 DHCP-Site-specific-8
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 233 DHCP-Site-specific-9
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 234 DHCP-Site-specific-10
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 235 DHCP-Site-specific-11
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 236 DHCP-Site-specific-12
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 237 DHCP-Site-specific-13
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 238 DHCP-Site-specific-14
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 239 DHCP-Site-specific-15
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 240 DHCP-Site-specific-16
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 241 DHCP-Site-specific-17
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 242 DHCP-Site-specific-18
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 243 DHCP-Site-specific-19
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 244 DHCP-Site-specific-20
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 245 DHCP-Site-specific-21
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 246 DHCP-Site-specific-22
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 247 DHCP-Site-specific-23
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 248 DHCP-Site-specific-24
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 249 DHCP-Site-specific-25
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 250 DHCP-Site-specific-26
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 251 DHCP-Site-specific-27
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 252 DHCP-Site-specific-28
Thu Jan 31 16:49:59 2019 : Debug: Adding DHCP-Parameter-Request-List value 253 DHCP-Site-specific-30
Thu Jan 31 16:49:59 2019 : Debug: No DHCP RFC space attribute at 254
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_digest with path: /usr/lib64/freeradius/rlm_digest.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_digest, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_digest
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "digest" from file /etc/raddb/mods-enabled/digest
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_dynamic_clients with path: /usr/lib64/freeradius/rlm_dynamic_clients.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_dynamic_clients, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_dynamic_clients
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "dynamic_clients" from file /etc/raddb/mods-enabled/dynamic_clients
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_eap with path: /usr/lib64/freeradius/rlm_eap.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_eap, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_eap
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "eap" from file /etc/raddb/mods-enabled/eap
Thu Jan 31 16:49:59 2019 : Debug: eap {
Thu Jan 31 16:49:59 2019 : Debug: default_eap_type = "peap"
Thu Jan 31 16:49:59 2019 : Debug: timer_expire = 60
Thu Jan 31 16:49:59 2019 : Debug: ignore_unknown_eap_types = no
Thu Jan 31 16:49:59 2019 : Debug: cisco_accounting_username_bug = no
Thu Jan 31 16:49:59 2019 : Debug: max_sessions = 16384
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_exec with path: /usr/lib64/freeradius/rlm_exec.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_exec, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_exec
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "echo" from file /etc/raddb/mods-enabled/echo
Thu Jan 31 16:49:59 2019 : Debug: exec echo {
Thu Jan 31 16:49:59 2019 : Debug: wait = yes
Thu Jan 31 16:49:59 2019 : Debug: program = "/bin/echo %{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: input_pairs = "request"
Thu Jan 31 16:49:59 2019 : Debug: output_pairs = "reply"
Thu Jan 31 16:49:59 2019 : Debug: shell_escape = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "exec" from file /etc/raddb/mods-enabled/exec
Thu Jan 31 16:49:59 2019 : Debug: exec {
Thu Jan 31 16:49:59 2019 : Debug: wait = no
Thu Jan 31 16:49:59 2019 : Debug: input_pairs = "request"
Thu Jan 31 16:49:59 2019 : Debug: shell_escape = yes
Thu Jan 31 16:49:59 2019 : Debug: timeout = 10
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_expiration with path: /usr/lib64/freeradius/rlm_expiration.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_expiration, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_expiration
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "expiration" from file /etc/raddb/mods-enabled/expiration
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_expr with path: /usr/lib64/freeradius/rlm_expr.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_expr, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_expr
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "expr" from file /etc/raddb/mods-enabled/expr
Thu Jan 31 16:49:59 2019 : Debug: expr {
Thu Jan 31 16:49:59 2019 : Debug: safe_characters = "@abcdefghijklmnopqrstuvwxyzABCDEFGHIJKLMNOPQRSTUVWXYZ0123456789.-_: /äéöüà âæçèéêëîïôœùûüaÿÄÉÖÜßÀÂÆÇÈÉÊËÎÃÔŒÙÛÜŸ"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_files with path: /usr/lib64/freeradius/rlm_files.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_files, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_files
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "files" from file /etc/raddb/mods-enabled/files
Thu Jan 31 16:49:59 2019 : Debug: files {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/raddb/mods-config/files/authorize"
Thu Jan 31 16:49:59 2019 : Debug: usersfile = "/etc/raddb/mods-config/files/authorize"
Thu Jan 31 16:49:59 2019 : Debug: acctusersfile = "/etc/raddb/mods-config/files/accounting"
Thu Jan 31 16:49:59 2019 : Debug: preproxy_usersfile = "/etc/raddb/mods-config/files/pre-proxy"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_linelog with path: /usr/lib64/freeradius/rlm_linelog.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_linelog, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_linelog
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "linelog" from file /etc/raddb/mods-enabled/linelog
Thu Jan 31 16:49:59 2019 : Debug: linelog {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/linelog"
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: syslog_severity = "info"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: format = "This is a log message for %{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: reference = "messages.%{%{reply:Packet-Type}:-default}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "log_accounting" from file /etc/raddb/mods-enabled/linelog
Thu Jan 31 16:49:59 2019 : Debug: linelog log_accounting {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/linelog-accounting"
Thu Jan 31 16:49:59 2019 : Debug: escape_filenames = no
Thu Jan 31 16:49:59 2019 : Debug: syslog_severity = "info"
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: format = ""
Thu Jan 31 16:49:59 2019 : Debug: reference = "Accounting-Request.%{%{Acct-Status-Type}:-unknown}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_logintime with path: /usr/lib64/freeradius/rlm_logintime.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_logintime, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_logintime
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "logintime" from file /etc/raddb/mods-enabled/logintime
Thu Jan 31 16:49:59 2019 : Debug: logintime {
Thu Jan 31 16:49:59 2019 : Debug: minimum_timeout = 60
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_mschap with path: /usr/lib64/freeradius/rlm_mschap.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_mschap, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_mschap
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "mschap" from file /etc/raddb/mods-enabled/mschap
Thu Jan 31 16:49:59 2019 : Debug: mschap {
Thu Jan 31 16:49:59 2019 : Debug: use_mppe = yes
Thu Jan 31 16:49:59 2019 : Debug: require_encryption = no
Thu Jan 31 16:49:59 2019 : Debug: require_strong = no
Thu Jan 31 16:49:59 2019 : Debug: with_ntdomain_hack = yes
Thu Jan 31 16:49:59 2019 : Debug: passchange {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: allow_retry = yes
Thu Jan 31 16:49:59 2019 : Debug: winbind_retry_with_normalised_username = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "ntlm_auth" from file /etc/raddb/mods-enabled/ntlm_auth
Thu Jan 31 16:49:59 2019 : Debug: exec ntlm_auth {
Thu Jan 31 16:49:59 2019 : Debug: wait = yes
Thu Jan 31 16:49:59 2019 : Debug: program = "/path/to/ntlm_auth --request-nt-key --domain=MYDOMAIN --username=%{mschap:User-Name} --password=%{User-Password}"
Thu Jan 31 16:49:59 2019 : Debug: shell_escape = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_pap with path: /usr/lib64/freeradius/rlm_pap.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_pap, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_pap
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "pap" from file /etc/raddb/mods-enabled/pap
Thu Jan 31 16:49:59 2019 : Debug: pap {
Thu Jan 31 16:49:59 2019 : Debug: normalise = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_passwd with path: /usr/lib64/freeradius/rlm_passwd.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_passwd, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_passwd
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "etc_passwd" from file /etc/raddb/mods-enabled/passwd
Thu Jan 31 16:49:59 2019 : Debug: passwd etc_passwd {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/etc/passwd"
Thu Jan 31 16:49:59 2019 : Debug: format = "*User-Name:Crypt-Password:"
Thu Jan 31 16:49:59 2019 : Debug: delimiter = ":"
Thu Jan 31 16:49:59 2019 : Debug: ignore_nislike = no
Thu Jan 31 16:49:59 2019 : Debug: ignore_empty = yes
Thu Jan 31 16:49:59 2019 : Debug: allow_multiple_keys = no
Thu Jan 31 16:49:59 2019 : Debug: hash_size = 100
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_preprocess with path: /usr/lib64/freeradius/rlm_preprocess.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_preprocess, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_preprocess
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "preprocess" from file /etc/raddb/mods-enabled/preprocess
Thu Jan 31 16:49:59 2019 : Debug: preprocess {
Thu Jan 31 16:49:59 2019 : Debug: huntgroups = "/etc/raddb/mods-config/preprocess/huntgroups"
Thu Jan 31 16:49:59 2019 : Debug: hints = "/etc/raddb/mods-config/preprocess/hints"
Thu Jan 31 16:49:59 2019 : Debug: with_ascend_hack = no
Thu Jan 31 16:49:59 2019 : Debug: ascend_channels_per_line = 23
Thu Jan 31 16:49:59 2019 : Debug: with_ntdomain_hack = no
Thu Jan 31 16:49:59 2019 : Debug: with_specialix_jetstream_hack = no
Thu Jan 31 16:49:59 2019 : Debug: with_cisco_vsa_hack = no
Thu Jan 31 16:49:59 2019 : Debug: with_alvarion_vsa_hack = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_radutmp with path: /usr/lib64/freeradius/rlm_radutmp.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_radutmp, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_radutmp
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "radutmp" from file /etc/raddb/mods-enabled/radutmp
Thu Jan 31 16:49:59 2019 : Debug: radutmp {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/radutmp"
Thu Jan 31 16:49:59 2019 : Debug: username = "%{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: case_sensitive = yes
Thu Jan 31 16:49:59 2019 : Debug: check_with_nas = yes
Thu Jan 31 16:49:59 2019 : Debug: permissions = 384
Thu Jan 31 16:49:59 2019 : Debug: caller_id = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_realm with path: /usr/lib64/freeradius/rlm_realm.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_realm, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_realm
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "IPASS" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: realm IPASS {
Thu Jan 31 16:49:59 2019 : Debug: format = "prefix"
Thu Jan 31 16:49:59 2019 : Debug: delimiter = "/"
Thu Jan 31 16:49:59 2019 : Debug: ignore_default = no
Thu Jan 31 16:49:59 2019 : Debug: ignore_null = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "suffix" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: realm suffix {
Thu Jan 31 16:49:59 2019 : Debug: format = "suffix"
Thu Jan 31 16:49:59 2019 : Debug: delimiter = "@"
Thu Jan 31 16:49:59 2019 : Debug: ignore_default = no
Thu Jan 31 16:49:59 2019 : Debug: ignore_null = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "realmpercent" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: realm realmpercent {
Thu Jan 31 16:49:59 2019 : Debug: format = "suffix"
Thu Jan 31 16:49:59 2019 : Debug: delimiter = "%"
Thu Jan 31 16:49:59 2019 : Debug: ignore_default = no
Thu Jan 31 16:49:59 2019 : Debug: ignore_null = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "ntdomain" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: realm ntdomain {
Thu Jan 31 16:49:59 2019 : Debug: format = "prefix"
Thu Jan 31 16:49:59 2019 : Debug: delimiter = "\\"
Thu Jan 31 16:49:59 2019 : Debug: ignore_default = no
Thu Jan 31 16:49:59 2019 : Debug: ignore_null = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_replicate with path: /usr/lib64/freeradius/rlm_replicate.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_replicate, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_replicate
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "replicate" from file /etc/raddb/mods-enabled/replicate
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_soh with path: /usr/lib64/freeradius/rlm_soh.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_soh, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_soh
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "soh" from file /etc/raddb/mods-enabled/soh
Thu Jan 31 16:49:59 2019 : Debug: soh {
Thu Jan 31 16:49:59 2019 : Debug: dhcp = yes
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "sradutmp" from file /etc/raddb/mods-enabled/sradutmp
Thu Jan 31 16:49:59 2019 : Debug: radutmp sradutmp {
Thu Jan 31 16:49:59 2019 : Debug: filename = "/var/log/radius/sradutmp"
Thu Jan 31 16:49:59 2019 : Debug: username = "%{User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: case_sensitive = yes
Thu Jan 31 16:49:59 2019 : Debug: check_with_nas = yes
Thu Jan 31 16:49:59 2019 : Debug: permissions = 420
Thu Jan 31 16:49:59 2019 : Debug: caller_id = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_unix with path: /usr/lib64/freeradius/rlm_unix.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_unix, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_unix
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "unix" from file /etc/raddb/mods-enabled/unix
Thu Jan 31 16:49:59 2019 : Debug: unix {
Thu Jan 31 16:49:59 2019 : Debug: radwtmp = "/var/log/radius/radwtmp"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Creating attribute Unix-Group
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_unpack with path: /usr/lib64/freeradius/rlm_unpack.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_unpack, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_unpack
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "unpack" from file /etc/raddb/mods-enabled/unpack
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_utf8 with path: /usr/lib64/freeradius/rlm_utf8.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_utf8, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_utf8
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "utf8" from file /etc/raddb/mods-enabled/utf8
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_ldap with path: /usr/lib64/freeradius/rlm_ldap.so
Thu Jan 31 16:49:59 2019 : Debug: Loaded rlm_ldap, checking if it's valid
Thu Jan 31 16:49:59 2019 : Debug: # Loaded module rlm_ldap
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "mdwacc_wlan" from file /etc/raddb/mods-enabled/ldap
Thu Jan 31 16:49:59 2019 : Debug: ldap mdwacc_wlan {
Thu Jan 31 16:49:59 2019 : Debug: server = "ldap.mdw.ac.at"
Thu Jan 31 16:49:59 2019 : Debug: port = 636
Thu Jan 31 16:49:59 2019 : Debug: identity = "cn=ldap_radius,o=MDWds"
Thu Jan 31 16:49:59 2019 : Debug: password = "frtz56uit33"
Thu Jan 31 16:49:59 2019 : Debug: sasl {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: edir_autz = yes
Thu Jan 31 16:49:59 2019 : Debug: user {
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: access_positive = yes
Thu Jan 31 16:49:59 2019 : Debug: sasl {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[622]: The item 'basedn' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[625]: The item 'access_attr' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: filter = "(cn=%{%{Stripped-User-Name}:-%{User-Name}})"
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: name_attribute = "cn"
Thu Jan 31 16:49:59 2019 : Debug: membership_attribute = "radiusGroupName"
Thu Jan 31 16:49:59 2019 : Debug: cacheable_name = no
Thu Jan 31 16:49:59 2019 : Debug: cacheable_dn = no
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[628]: The item 'basedn' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: client {
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: base_dn = ""
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: profile {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: options {
Thu Jan 31 16:49:59 2019 : Debug: ldap_debug = 0
Thu Jan 31 16:49:59 2019 : Debug: net_timeout = 1
Thu Jan 31 16:49:59 2019 : Debug: res_timeout = 20
Thu Jan 31 16:49:59 2019 : Debug: srv_timelimit = 3
Thu Jan 31 16:49:59 2019 : Debug: idle = 60
Thu Jan 31 16:49:59 2019 : Debug: probes = 3
Thu Jan 31 16:49:59 2019 : Debug: interval = 30
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[634]: The item 'timeout' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: tls {
Thu Jan 31 16:49:59 2019 : Debug: start_tls = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[609]: The item 'basedn' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[610]: The item 'access_attr' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[612]: The item 'filter' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Creating attribute mdwacc_wlan-LDAP-Group
Thu Jan 31 16:49:59 2019 : Debug: # Loading module "mdwacc_vpn" from file /etc/raddb/mods-enabled/ldap
Thu Jan 31 16:49:59 2019 : Debug: ldap mdwacc_vpn {
Thu Jan 31 16:49:59 2019 : Debug: server = "ldap.mdw.ac.at"
Thu Jan 31 16:49:59 2019 : Debug: port = 636
Thu Jan 31 16:49:59 2019 : Debug: identity = "cn=ldap_radius,o=MDWds"
Thu Jan 31 16:49:59 2019 : Debug: password = "frtz56uit33"
Thu Jan 31 16:49:59 2019 : Debug: sasl {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: edir_autz = yes
Thu Jan 31 16:49:59 2019 : Debug: user {
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: access_positive = yes
Thu Jan 31 16:49:59 2019 : Debug: sasl {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[672]: The item 'basedn' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[675]: The item 'access_attr' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: name_attribute = "cn"
Thu Jan 31 16:49:59 2019 : Debug: cacheable_name = no
Thu Jan 31 16:49:59 2019 : Debug: cacheable_dn = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: client {
Thu Jan 31 16:49:59 2019 : Debug: scope = "sub"
Thu Jan 31 16:49:59 2019 : Debug: base_dn = ""
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: profile {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: options {
Thu Jan 31 16:49:59 2019 : Debug: ldap_debug = 0
Thu Jan 31 16:49:59 2019 : Debug: net_timeout = 1
Thu Jan 31 16:49:59 2019 : Debug: res_timeout = 20
Thu Jan 31 16:49:59 2019 : Debug: srv_timelimit = 3
Thu Jan 31 16:49:59 2019 : Debug: idle = 60
Thu Jan 31 16:49:59 2019 : Debug: probes = 3
Thu Jan 31 16:49:59 2019 : Debug: interval = 30
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[683]: The item 'timeout' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: tls {
Thu Jan 31 16:49:59 2019 : Debug: start_tls = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[659]: The item 'basedn' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[660]: The item 'access_attr' is defined, but is unused by the configuration
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Creating attribute mdwacc_vpn-LDAP-Group
Thu Jan 31 16:49:59 2019 : Debug: instantiate {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "reject" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "fail" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "ok" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "handled" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "invalid" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "userlock" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "notfound" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "noop" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "updated" from file /etc/raddb/mods-enabled/always
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "attr_filter.post-proxy" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/attr_filter/post-proxy
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "attr_filter.pre-proxy" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/attr_filter/pre-proxy
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "attr_filter.access_reject" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/attr_filter/access_reject
Thu Jan 31 16:49:59 2019 : Warning: [/etc/raddb/mods-config/attr_filter/access_reject]:11 Check item "FreeRADIUS-Response-Delay" found in filter list for realm "DEFAULT".
Thu Jan 31 16:49:59 2019 : Warning: [/etc/raddb/mods-config/attr_filter/access_reject]:11 Check item "FreeRADIUS-Response-Delay-USec" found in filter list for realm "DEFAULT".
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "attr_filter.access_challenge" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/attr_filter/access_challenge
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "attr_filter.accounting_response" from file /etc/raddb/mods-enabled/attr_filter
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/attr_filter/accounting_response
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "cache_eap" from file /etc/raddb/mods-enabled/cache_eap
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_cache_rbtree with path: /usr/lib64/freeradius/rlm_cache_rbtree.so
Thu Jan 31 16:49:59 2019 : Debug: rlm_cache (cache_eap): Driver rlm_cache_rbtree (module rlm_cache_rbtree) loaded and linked
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "detail" from file /etc/raddb/mods-enabled/detail
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "auth_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: rlm_detail (auth_log): 'User-Password' suppressed, will not appear in detail output
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "reply_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "pre_proxy_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "post_proxy_log" from file /etc/raddb/mods-enabled/detail.log
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "eap" from file /etc/raddb/mods-enabled/eap
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_eap_tls with path: /usr/lib64/freeradius/rlm_eap_tls.so
Thu Jan 31 16:49:59 2019 : Debug: # Linked to sub-module rlm_eap_tls
Thu Jan 31 16:49:59 2019 : Debug: tls {
Thu Jan 31 16:49:59 2019 : Debug: tls = "tls-common"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: tls-config tls-common {
Thu Jan 31 16:49:59 2019 : Debug: verify_depth = 0
Thu Jan 31 16:49:59 2019 : Debug: ca_path = "/etc/raddb/certs"
Thu Jan 31 16:49:59 2019 : Debug: pem_file_type = yes
Thu Jan 31 16:49:59 2019 : Debug: private_key_file = "/etc/raddb/certs/mdw-2018/radius.key"
Thu Jan 31 16:49:59 2019 : Debug: certificate_file = "/etc/raddb/certs/mdw-2018/radius_mdw_ac_at.crt"
Thu Jan 31 16:49:59 2019 : Debug: ca_file = "/etc/raddb/certs/mdw-2018/DigiCertCA.crt"
Thu Jan 31 16:49:59 2019 : Debug: dh_file = "/etc/raddb/certs/dh"
Thu Jan 31 16:49:59 2019 : Debug: fragment_size = 1024
Thu Jan 31 16:49:59 2019 : Debug: include_length = yes
Thu Jan 31 16:49:59 2019 : Debug: auto_chain = yes
Thu Jan 31 16:49:59 2019 : Debug: check_crl = no
Thu Jan 31 16:49:59 2019 : Debug: check_all_crl = no
Thu Jan 31 16:49:59 2019 : Debug: cipher_list = "DEFAULT"
Thu Jan 31 16:49:59 2019 : Debug: cipher_server_preference = no
Thu Jan 31 16:49:59 2019 : Debug: ecdh_curve = "prime256v1"
Thu Jan 31 16:49:59 2019 : Debug: cache {
Thu Jan 31 16:49:59 2019 : Debug: enable = no
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 24
Thu Jan 31 16:49:59 2019 : Debug: max_entries = 255
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: verify {
Thu Jan 31 16:49:59 2019 : Debug: skip_if_ocsp_ok = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: ocsp {
Thu Jan 31 16:49:59 2019 : Debug: enable = no
Thu Jan 31 16:49:59 2019 : Debug: override_cert_url = yes
Thu Jan 31 16:49:59 2019 : Debug: url = "http://127.0.0.1/ocsp/"
Thu Jan 31 16:49:59 2019 : Debug: use_nonce = yes
Thu Jan 31 16:49:59 2019 : Debug: timeout = 0
Thu Jan 31 16:49:59 2019 : Debug: softfail = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_eap_ttls with path: /usr/lib64/freeradius/rlm_eap_ttls.so
Thu Jan 31 16:49:59 2019 : Debug: # Linked to sub-module rlm_eap_ttls
Thu Jan 31 16:49:59 2019 : Debug: ttls {
Thu Jan 31 16:49:59 2019 : Debug: tls = "tls-common"
Thu Jan 31 16:49:59 2019 : Debug: default_eap_type = "md5"
Thu Jan 31 16:49:59 2019 : Debug: copy_request_to_tunnel = no
Thu Jan 31 16:49:59 2019 : Debug: use_tunneled_reply = no
Thu Jan 31 16:49:59 2019 : Debug: virtual_server = "inner-tunnel"
Thu Jan 31 16:49:59 2019 : Debug: include_length = yes
Thu Jan 31 16:49:59 2019 : Debug: require_client_cert = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: tls: Using cached TLS configuration from previous invocation
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_eap_peap with path: /usr/lib64/freeradius/rlm_eap_peap.so
Thu Jan 31 16:49:59 2019 : Debug: # Linked to sub-module rlm_eap_peap
Thu Jan 31 16:49:59 2019 : Debug: peap {
Thu Jan 31 16:49:59 2019 : Debug: tls = "tls-common"
Thu Jan 31 16:49:59 2019 : Debug: default_eap_type = "mschapv2"
Thu Jan 31 16:49:59 2019 : Debug: copy_request_to_tunnel = no
Thu Jan 31 16:49:59 2019 : Debug: use_tunneled_reply = no
Thu Jan 31 16:49:59 2019 : Debug: proxy_tunneled_request_as_eap = yes
Thu Jan 31 16:49:59 2019 : Debug: virtual_server = "inner-tunnel"
Thu Jan 31 16:49:59 2019 : Debug: soh = no
Thu Jan 31 16:49:59 2019 : Debug: require_client_cert = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: tls: Using cached TLS configuration from previous invocation
Thu Jan 31 16:49:59 2019 : Debug: Loading rlm_eap_mschapv2 with path: /usr/lib64/freeradius/rlm_eap_mschapv2.so
Thu Jan 31 16:49:59 2019 : Debug: # Linked to sub-module rlm_eap_mschapv2
Thu Jan 31 16:49:59 2019 : Debug: mschapv2 {
Thu Jan 31 16:49:59 2019 : Debug: with_ntdomain_hack = no
Thu Jan 31 16:49:59 2019 : Debug: send_error = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "expiration" from file /etc/raddb/mods-enabled/expiration
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "files" from file /etc/raddb/mods-enabled/files
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/files/authorize
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/files/authorize
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/files/accounting
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/files/pre-proxy
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "linelog" from file /etc/raddb/mods-enabled/linelog
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "log_accounting" from file /etc/raddb/mods-enabled/linelog
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "logintime" from file /etc/raddb/mods-enabled/logintime
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "mschap" from file /etc/raddb/mods-enabled/mschap
Thu Jan 31 16:49:59 2019 : Debug: rlm_mschap (mschap): using internal authentication
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "pap" from file /etc/raddb/mods-enabled/pap
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "etc_passwd" from file /etc/raddb/mods-enabled/passwd
Thu Jan 31 16:49:59 2019 : Debug: rlm_passwd: nfields: 3 keyfield 0(User-Name) listable: no
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "preprocess" from file /etc/raddb/mods-enabled/preprocess
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/preprocess/huntgroups
Thu Jan 31 16:49:59 2019 : Debug: reading pairlist file /etc/raddb/mods-config/preprocess/hints
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "IPASS" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "suffix" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "realmpercent" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "ntdomain" from file /etc/raddb/mods-enabled/realm
Thu Jan 31 16:49:59 2019 : Warning: /etc/raddb/mods-enabled/ldap[629]: Found dynamic expansion in string which will not be dynamically expanded
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "mdwacc_wlan" from file /etc/raddb/mods-enabled/ldap
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap: libldap vendor: OpenLDAP, version: 20441
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Couldn't find configuration for accounting, will return NOOP for calls from this section
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Couldn't find configuration for post-auth, will return NOOP for calls from this section
Thu Jan 31 16:49:59 2019 : Debug: LDAP server string: ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Using local pool section
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): No pool reference found for config item "mdwacc_wlan.pool"
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Initialising connection pool
Thu Jan 31 16:49:59 2019 : Debug: pool {
Thu Jan 31 16:49:59 2019 : Debug: start = 5
Thu Jan 31 16:49:59 2019 : Debug: min = 3
Thu Jan 31 16:49:59 2019 : Debug: max = 32
Thu Jan 31 16:49:59 2019 : Debug: spare = 3
Thu Jan 31 16:49:59 2019 : Debug: uses = 0
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: cleanup_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 60
Thu Jan 31 16:49:59 2019 : Debug: retry_delay = 1
Thu Jan 31 16:49:59 2019 : Debug: spread = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_wlan): Opening additional connection (0), 1 of 32 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): New libldap handle 0x55616c893eb0
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_wlan): Opening additional connection (1), 1 of 31 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): New libldap handle 0x55616c9e28b0
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_wlan): Opening additional connection (2), 1 of 30 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): New libldap handle 0x55616caf8a90
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_wlan): Opening additional connection (3), 1 of 29 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): New libldap handle 0x55616cc0ccd0
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_wlan): Opening additional connection (4), 1 of 28 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): New libldap handle 0x55616cd1e070
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Bind successful
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_wlan): Adding pool reference 0x55616c8edc80 to config item "mdwacc_wlan.pool"
Thu Jan 31 16:49:59 2019 : Debug: # Instantiating module "mdwacc_vpn" from file /etc/raddb/mods-enabled/ldap
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Couldn't find configuration for accounting, will return NOOP for calls from this section
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Couldn't find configuration for post-auth, will return NOOP for calls from this section
Thu Jan 31 16:49:59 2019 : Debug: LDAP server string: ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Using local pool section
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): No pool reference found for config item "mdwacc_vpn.pool"
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Initialising connection pool
Thu Jan 31 16:49:59 2019 : Debug: pool {
Thu Jan 31 16:49:59 2019 : Debug: start = 5
Thu Jan 31 16:49:59 2019 : Debug: min = 3
Thu Jan 31 16:49:59 2019 : Debug: max = 32
Thu Jan 31 16:49:59 2019 : Debug: spare = 3
Thu Jan 31 16:49:59 2019 : Debug: uses = 0
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: cleanup_interval = 30
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 60
Thu Jan 31 16:49:59 2019 : Debug: retry_delay = 1
Thu Jan 31 16:49:59 2019 : Debug: spread = no
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_vpn): Opening additional connection (0), 1 of 32 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): New libldap handle 0x55616cde13c0
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_vpn): Opening additional connection (1), 1 of 31 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): New libldap handle 0x55616cf511f0
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_vpn): Opening additional connection (2), 1 of 30 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): New libldap handle 0x55616d063c40
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_vpn): Opening additional connection (3), 1 of 29 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): New libldap handle 0x55616d177e60
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Bind successful
Thu Jan 31 16:49:59 2019 : Info: rlm_ldap (mdwacc_vpn): Opening additional connection (4), 1 of 28 pending slots used
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Connecting to ldap://ldap.mdw.ac.at:636
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): New libldap handle 0x55616d289160
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Waiting for bind result...
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Bind successful
Thu Jan 31 16:49:59 2019 : Debug: rlm_ldap (mdwacc_vpn): Adding pool reference 0x55616ce58ce0 to config item "mdwacc_vpn.pool"
Thu Jan 31 16:49:59 2019 : Debug: } # modules
Thu Jan 31 16:49:59 2019 : Debug: radiusd: #### Loading Virtual Servers ####
Thu Jan 31 16:49:59 2019 : Debug: server { # from file /etc/raddb/radiusd.conf
Thu Jan 31 16:49:59 2019 : Debug: } # server
Thu Jan 31 16:49:59 2019 : Debug: server default { # from file /etc/raddb/sites-enabled/default
Thu Jan 31 16:49:59 2019 : Debug: authenticate {
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: pap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: chap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: } # authenticate
Thu Jan 31 16:49:59 2019 : Debug: authorize {
Thu Jan 31 16:49:59 2019 : Debug: policy filter_username {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name) {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ / /) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains whitespace'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@[^@]*@/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Multiple @ in User-Name'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains multiple ..s'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@/ && !&User-Name =~ /@(.+)\.(.+)$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm does not have at least one dot separator'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm ends with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm begins with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: preprocess
Thu Jan 31 16:49:59 2019 : Debug: auth_log
Thu Jan 31 16:49:59 2019 : Debug: chap
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: digest
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Debug: expiration
Thu Jan 31 16:49:59 2019 : Debug: logintime
Thu Jan 31 16:49:59 2019 : Debug: pap
Thu Jan 31 16:49:59 2019 : Debug: } # authorize
Thu Jan 31 16:49:59 2019 : Debug: preacct {
Thu Jan 31 16:49:59 2019 : Debug: preprocess
Thu Jan 31 16:49:59 2019 : Debug: policy acct_unique {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Tmp-String-9 := "ai:"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if ("%{hex:&Class}" =~ /^%{hex:&Tmp-String-9}/ && "%{string:&Class}" =~ /^ai:([0-9a-f]{32})/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Acct-Unique-Session-Id := "%{md5:%{1},%{Acct-Session-ID}}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: else {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Acct-Unique-Session-Id := "%{md5:%{User-Name},%{Acct-Session-ID},%{%{NAS-IPv6-Address}:-%{NAS-IP-Address}},%{NAS-Identifier},%{NAS-Port-ID},%{NAS-Port}}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Debug: } # preacct
Thu Jan 31 16:49:59 2019 : Debug: accounting {
Thu Jan 31 16:49:59 2019 : Debug: detail
Thu Jan 31 16:49:59 2019 : Debug: unix
Thu Jan 31 16:49:59 2019 : Warning: Ignoring "sql" (see raddb/mods-available/README.rst)
Thu Jan 31 16:49:59 2019 : Debug: exec
Thu Jan 31 16:49:59 2019 : Debug: attr_filter.accounting_response
Thu Jan 31 16:49:59 2019 : Debug: } # accounting
Thu Jan 31 16:49:59 2019 : Debug: post-proxy {
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: } # post-proxy
Thu Jan 31 16:49:59 2019 : Debug: post-auth {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &reply[*] += &session-state[*]
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: exec
Thu Jan 31 16:49:59 2019 : Debug: policy remove_reply_message_if_eap {
Thu Jan 31 16:49:59 2019 : Debug: if (&reply:EAP-Message && &reply:Reply-Message) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &reply:Reply-Message !* ANY
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: else {
Thu Jan 31 16:49:59 2019 : Debug: noop
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: attr_filter.access_reject
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: policy remove_reply_message_if_eap {
Thu Jan 31 16:49:59 2019 : Debug: if (&reply:EAP-Message && &reply:Reply-Message) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &reply:Reply-Message !* ANY
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: else {
Thu Jan 31 16:49:59 2019 : Debug: noop
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: } # post-auth
Thu Jan 31 16:49:59 2019 : Debug: } # server default
Thu Jan 31 16:49:59 2019 : Debug: server inner-tunnel { # from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:49:59 2019 : Debug: authenticate {
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: pap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: chap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: } # authenticate
Thu Jan 31 16:49:59 2019 : Debug: authorize {
Thu Jan 31 16:49:59 2019 : Debug: policy filter_username {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name) {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ / /) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains whitespace'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@[^@]*@/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Multiple @ in User-Name'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains multiple ..s'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@/ && !&User-Name =~ /@(.+)\.(.+)$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm does not have at least one dot separator'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm ends with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm begins with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: chap
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &control:Proxy-To-Realm := LOCAL
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Warning: Ignoring "ldap" (see raddb/mods-available/README.rst)
Thu Jan 31 16:49:59 2019 : Debug: expiration
Thu Jan 31 16:49:59 2019 : Debug: logintime
Thu Jan 31 16:49:59 2019 : Debug: pap
Thu Jan 31 16:49:59 2019 : Debug: } # authorize
Thu Jan 31 16:49:59 2019 : Debug: session {
Thu Jan 31 16:49:59 2019 : Debug: radutmp
Thu Jan 31 16:49:59 2019 : Debug: } # session
Thu Jan 31 16:49:59 2019 : Debug: post-proxy {
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: } # post-proxy
Thu Jan 31 16:49:59 2019 : Debug: post-auth {
Thu Jan 31 16:49:59 2019 : Info: # Skipping contents of 'if' as it is always 'false' -- /etc/raddb/sites-enabled/inner-tunnel:331
Thu Jan 31 16:49:59 2019 : Debug: if (false) {
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: attr_filter.access_reject
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &outer.session-state:Module-Failure-Message := &Module-Failure-Message
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: } # post-auth
Thu Jan 31 16:49:59 2019 : Debug: } # server inner-tunnel
Thu Jan 31 16:49:59 2019 : Debug: server mdwwlan { # from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:49:59 2019 : Debug: authenticate {
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: } # authenticate
Thu Jan 31 16:49:59 2019 : Debug: authorize {
Thu Jan 31 16:49:59 2019 : Debug: policy filter_username {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name) {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ / /) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains whitespace'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@[^@]*@/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Multiple @ in User-Name'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains multiple ..s'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@/ && !&User-Name =~ /@(.+)\.(.+)$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm does not have at least one dot separator'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm ends with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm begins with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: preprocess
Thu Jan 31 16:49:59 2019 : Debug: auth_log
Thu Jan 31 16:49:59 2019 : Debug: detail
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Debug: eap
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: mdwacc_wlan
Thu Jan 31 16:49:59 2019 : Debug: mschap
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &MS-CHAP-User-Name := "%{mschap:User-Name}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: } # authorize
Thu Jan 31 16:49:59 2019 : Debug: } # server mdwwlan
Thu Jan 31 16:49:59 2019 : Debug: server mdwvpn { # from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:49:59 2019 : Debug: authenticate {
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: pap
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: } # authenticate
Thu Jan 31 16:49:59 2019 : Debug: authorize {
Thu Jan 31 16:49:59 2019 : Debug: policy filter_username {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name) {
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ / /) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains whitespace'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@[^@]*@/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Multiple @ in User-Name'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: User-Name contains multiple ..s'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@/ && !&User-Name =~ /@(.+)\.(.+)$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm does not have at least one dot separator'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /\.$/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm ends with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if (&User-Name =~ /@\./) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Module-Failure-Message += 'Rejected: Realm begins with a dot'
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: reject
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: preprocess
Thu Jan 31 16:49:59 2019 : Debug: auth_log
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Debug: expiration
Thu Jan 31 16:49:59 2019 : Debug: logintime
Thu Jan 31 16:49:59 2019 : Debug: group {
Thu Jan 31 16:49:59 2019 : Debug: mdwacc_vpn
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &control:Auth-Type := PAP
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: } # authorize
Thu Jan 31 16:49:59 2019 : Debug: preacct {
Thu Jan 31 16:49:59 2019 : Debug: preprocess
Thu Jan 31 16:49:59 2019 : Debug: policy acct_unique {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Tmp-String-9 := "ai:"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: if ("%{hex:&Class}" =~ /^%{hex:&Tmp-String-9}/ && "%{string:&Class}" =~ /^ai:([0-9a-f]{32})/) {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Acct-Unique-Session-Id := "%{md5:%{1},%{Acct-Session-ID}}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: else {
Thu Jan 31 16:49:59 2019 : Debug: update {
Thu Jan 31 16:49:59 2019 : Debug: &Acct-Unique-Session-Id := "%{md5:%{User-Name},%{Acct-Session-ID},%{%{NAS-IPv6-Address}:-%{NAS-IP-Address}},%{NAS-Identifier},%{NAS-Port-ID},%{NAS-Port}}"
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: suffix
Thu Jan 31 16:49:59 2019 : Debug: files
Thu Jan 31 16:49:59 2019 : Debug: } # preacct
Thu Jan 31 16:49:59 2019 : Debug: post-auth {
Thu Jan 31 16:49:59 2019 : Debug: } # post-auth
Thu Jan 31 16:49:59 2019 : Debug: } # server mdwvpn
Thu Jan 31 16:49:59 2019 : Debug: Created signal pipe. Read end FD 15, write end FD 16
Thu Jan 31 16:49:59 2019 : Debug: radiusd: #### Opening IP addresses and Ports ####
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth with path: /usr/lib64/freeradius/proto_auth.so
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth failed: /usr/lib64/freeradius/proto_auth.so: cannot open shared object file: No such file or directory - No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: Loading library using linker search path(s)
Thu Jan 31 16:49:59 2019 : Debug: Defaults : /lib:/usr/lib
Thu Jan 31 16:49:59 2019 : Debug: Failed with error: proto_auth.so: cannot open shared object file: No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: listen {
Thu Jan 31 16:49:59 2019 : Debug: type = "auth"
Thu Jan 31 16:49:59 2019 : Debug: ipv4addr = 193.170.213.151
Thu Jan 31 16:49:59 2019 : Debug: port = 1812
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_acct with path: /usr/lib64/freeradius/proto_acct.so
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_acct failed: /usr/lib64/freeradius/proto_acct.so: cannot open shared object file: No such file or directory - No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: Loading library using linker search path(s)
Thu Jan 31 16:49:59 2019 : Debug: Defaults : /lib:/usr/lib
Thu Jan 31 16:49:59 2019 : Debug: Failed with error: proto_acct.so: cannot open shared object file: No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: listen {
Thu Jan 31 16:49:59 2019 : Debug: type = "acct"
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 193.170.213.151
Thu Jan 31 16:49:59 2019 : Debug: port = 1813
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth with path: /usr/lib64/freeradius/proto_auth.so
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth failed: /usr/lib64/freeradius/proto_auth.so: cannot open shared object file: No such file or directory - No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: Loading library using linker search path(s)
Thu Jan 31 16:49:59 2019 : Debug: Defaults : /lib:/usr/lib
Thu Jan 31 16:49:59 2019 : Debug: Failed with error: proto_auth.so: cannot open shared object file: No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: listen {
Thu Jan 31 16:49:59 2019 : Debug: type = "auth"
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 127.0.0.1
Thu Jan 31 16:49:59 2019 : Debug: port = 18120
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth with path: /usr/lib64/freeradius/proto_auth.so
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth failed: /usr/lib64/freeradius/proto_auth.so: cannot open shared object file: No such file or directory - No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: Loading library using linker search path(s)
Thu Jan 31 16:49:59 2019 : Debug: Defaults : /lib:/usr/lib
Thu Jan 31 16:49:59 2019 : Debug: Failed with error: proto_auth.so: cannot open shared object file: No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: listen {
Thu Jan 31 16:49:59 2019 : Debug: type = "auth"
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 193.170.213.151
Thu Jan 31 16:49:59 2019 : Debug: port = 1820
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth with path: /usr/lib64/freeradius/proto_auth.so
Thu Jan 31 16:49:59 2019 : Debug: Loading proto_auth failed: /usr/lib64/freeradius/proto_auth.so: cannot open shared object file: No such file or directory - No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: Loading library using linker search path(s)
Thu Jan 31 16:49:59 2019 : Debug: Defaults : /lib:/usr/lib
Thu Jan 31 16:49:59 2019 : Debug: Failed with error: proto_auth.so: cannot open shared object file: No such file or directory
Thu Jan 31 16:49:59 2019 : Debug: listen {
Thu Jan 31 16:49:59 2019 : Debug: type = "auth"
Thu Jan 31 16:49:59 2019 : Debug: ipaddr = 193.170.213.151
Thu Jan 31 16:49:59 2019 : Debug: port = 1818
Thu Jan 31 16:49:59 2019 : Debug: limit {
Thu Jan 31 16:49:59 2019 : Debug: max_connections = 16
Thu Jan 31 16:49:59 2019 : Debug: lifetime = 0
Thu Jan 31 16:49:59 2019 : Debug: idle_timeout = 30
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: }
Thu Jan 31 16:49:59 2019 : Debug: Listening on auth address 193.170.213.151 port 1812 bound to server default
Thu Jan 31 16:49:59 2019 : Debug: Listening on acct address 193.170.213.151 port 1813 bound to server default
Thu Jan 31 16:49:59 2019 : Debug: Listening on auth address 127.0.0.1 port 18120 bound to server inner-tunnel
Thu Jan 31 16:49:59 2019 : Debug: Listening on auth address 193.170.213.151 port 1820 bound to server mdwwlan
Thu Jan 31 16:49:59 2019 : Debug: Listening on auth address 193.170.213.151 port 1818 bound to server mdwvpn
Thu Jan 31 16:49:59 2019 : Debug: Opened new proxy socket 'proxy address * port 55127'
Thu Jan 31 16:49:59 2019 : Debug: Listening on proxy address * port 55127
Thu Jan 31 16:49:59 2019 : Info: Ready to process requests
Thu Jan 31 16:50:08 2019 : Debug: (0) Received Access-Request Id 27 from 10.1.150.240:52317 to 193.170.213.151:1820 length 262
Thu Jan 31 16:50:08 2019 : Debug: (0) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (0) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (0) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (0) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (0) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (0) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (0) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (0) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (0) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (0) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (0) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (0) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (0) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (0) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (0) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (0) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (0) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (0) EAP-Message = 0x0202000b016b6f65686e65
Thu Jan 31 16:50:08 2019 : Debug: (0) Message-Authenticator = 0x4427512e84896e983c7a961852dd34a0
Thu Jan 31 16:50:08 2019 : Debug: (0) session-state: No State attribute
Thu Jan 31 16:50:08 2019 : Debug: (0) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (0) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (0) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (0) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (0) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (0) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (0) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (0) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (0) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (0) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (0) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (0) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (0) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (0) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (0) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (0) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (0) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (0) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (0) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (0) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (0) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (0) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (0) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (0) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (0) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (0) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (0) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: Peer sent EAP Response (code 2) ID 2 length 11
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: EAP-Identity reply, returning 'ok' so we can short-circuit the rest of authorize
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (0) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (0) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (0) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (0) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (0)
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (0) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (0)
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (0) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (0) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (0) update {
Thu Jan 31 16:50:08 2019 : Debug: (0) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (0) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (0) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (0) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (0) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (0) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (0) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (0) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: Peer sent packet with method EAP Identity (1)
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (0) eap_peap: Initiating new EAP-TLS session
Thu Jan 31 16:50:08 2019 : Debug: (0) eap_peap: [eaptls start] = request
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: Sending EAP Request (code 1) ID 3 length 6
Thu Jan 31 16:50:08 2019 : Debug: (0) eap: EAP session adding &reply:State = 0x1e4749eb1e44506c
Thu Jan 31 16:50:08 2019 : Debug: (0) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (0) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (0) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (0) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (0) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (0) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (0) Sent Access-Challenge Id 27 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (0) EAP-Message = 0x010300061920
Thu Jan 31 16:50:08 2019 : Debug: (0) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (0) State = 0x1e4749eb1e44506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (0) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:08 2019 : Debug: (1) Received Access-Request Id 28 from 10.1.150.240:52317 to 193.170.213.151:1820 length 435
Thu Jan 31 16:50:08 2019 : Debug: (1) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (1) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (1) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (1) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (1) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (1) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (1) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (1) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (1) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (1) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (1) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (1) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (1) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (1) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (1) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (1) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (1) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (1) EAP-Message = 0x020300a619800000009c16030300970100009303035c53192f9ab8940ec15978a35968422898ced494a601c2e63b87f895033adaa900002ac02cc02bc030c02f009f009ec024c023c028c027c00ac009c014c013009d009c003d003c0035002f000a01000040000500050100000000000a00080006001d
Thu Jan 31 16:50:08 2019 : Debug: (1) State = 0x1e4749eb1e44506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (1) Message-Authenticator = 0xeab83889db41ce1e3feabdc5926313b6
Thu Jan 31 16:50:08 2019 : Debug: (1) session-state: No cached attributes
Thu Jan 31 16:50:08 2019 : Debug: (1) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (1) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (1) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (1) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (1) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (1) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (1) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (1) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (1) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (1) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (1) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (1) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (1) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (1) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (1) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (1) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (1) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (1) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (1) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (1) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (1) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (1) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (1) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (1) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (1) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (1) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (1) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Peer sent EAP Response (code 2) ID 3 length 166
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Continuing tunnel setup
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (1) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (1) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (1) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (1) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (1)
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (1) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (1)
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (1) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (1) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (1) update {
Thu Jan 31 16:50:08 2019 : Debug: (1) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (1) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (1) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (1) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (1) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (1) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (1) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (1) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Expiring EAP session with state 0x1e4749eb1e44506c
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Finished EAP session with state 0x1e4749eb1e44506c
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Previous EAP request found for state 0x1e4749eb1e44506c, released from the list
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: Peer sent flags --L
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: Peer indicated complete TLS record size will be 156 bytes
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: Got complete TLS record (156 bytes)
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: [eaptls verify] = length included
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: (other): before/accept initialization
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: before/accept initialization
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: <<< recv TLS 1.2 [length 0097]
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 read client hello A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: >>> send TLS 1.2 [length 0039]
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 write server hello A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: >>> send TLS 1.2 [length 0ce3]
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 write certificate A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: >>> send TLS 1.2 [length 024d]
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 write key exchange A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: >>> send TLS 1.2 [length 0004]
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 write server done A
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 flush data
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: SSLv3 read client certificate A
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: Need to read more data: SSLv3 read client key exchange A
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: TLS_accept: Need to read more data: SSLv3 read client key exchange A
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: In SSL Handshake Phase
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: In SSL Accept mode
Thu Jan 31 16:50:08 2019 : Debug: (1) eap_peap: [eaptls process] = handled
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: Sending EAP Request (code 1) ID 4 length 1004
Thu Jan 31 16:50:08 2019 : Debug: (1) eap: EAP session adding &reply:State = 0x1e4749eb1f43506c
Thu Jan 31 16:50:08 2019 : Debug: (1) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (1) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (1) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (1) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (1) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (1) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (1) Sent Access-Challenge Id 28 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (1) EAP-Message = 0x010403ec19c000000f811603030039020000350303af379ae4ad0569a13d1e9f0b374b03730f166d8c6bc1737532583cb0202b061e00c03000000dff01000100000b0004030001021603030ce30b000cdf000cdc0007d7308207d3308206bba00302010202100bc8eb6217dd9e72721f743ab13c587330
Thu Jan 31 16:50:08 2019 : Debug: (1) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (1) State = 0x1e4749eb1f43506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (1) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:08 2019 : Debug: (2) Received Access-Request Id 29 from 10.1.150.240:52317 to 193.170.213.151:1820 length 275
Thu Jan 31 16:50:08 2019 : Debug: (2) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (2) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (2) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (2) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (2) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (2) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (2) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (2) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (2) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (2) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (2) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (2) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (2) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (2) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (2) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (2) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (2) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (2) EAP-Message = 0x020400061900
Thu Jan 31 16:50:08 2019 : Debug: (2) State = 0x1e4749eb1f43506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (2) Message-Authenticator = 0x82174c8829ef6dc5c30ae10beb72355a
Thu Jan 31 16:50:08 2019 : Debug: (2) session-state: No cached attributes
Thu Jan 31 16:50:08 2019 : Debug: (2) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (2) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (2) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (2) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (2) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (2) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (2) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (2) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (2) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (2) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (2) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (2) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (2) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (2) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (2) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (2) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (2) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (2) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (2) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (2) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (2) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (2) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (2) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (2) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (2) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (2) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (2) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Peer sent EAP Response (code 2) ID 4 length 6
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Continuing tunnel setup
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (2) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (2) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (2) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (2) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (2)
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (2) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (2)
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (2) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (2) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (2) update {
Thu Jan 31 16:50:08 2019 : Debug: (2) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (2) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (2) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (2) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (2) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (2) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (2) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (2) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Expiring EAP session with state 0x1e4749eb1f43506c
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Finished EAP session with state 0x1e4749eb1f43506c
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Previous EAP request found for state 0x1e4749eb1f43506c, released from the list
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (2) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:08 2019 : Debug: (2) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:08 2019 : Debug: (2) eap_peap: Peer ACKed our handshake fragment
Thu Jan 31 16:50:08 2019 : Debug: (2) eap_peap: [eaptls verify] = request
Thu Jan 31 16:50:08 2019 : Debug: (2) eap_peap: [eaptls process] = handled
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: Sending EAP Request (code 1) ID 5 length 1000
Thu Jan 31 16:50:08 2019 : Debug: (2) eap: EAP session adding &reply:State = 0x1e4749eb1c42506c
Thu Jan 31 16:50:08 2019 : Debug: (2) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (2) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (2) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (2) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (2) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (2) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (2) Sent Access-Challenge Id 29 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (2) EAP-Message = 0x010503e81940bbe9511163755062301d0603551d0e0416041418589a13584cf750de092efe5aaf8b281d06001f301b0603551d110414301282107261646975732e6d64772e61632e6174300e0603551d0f0101ff0404030205a0301d0603551d250416301406082b0601050507030106082b0601050507
Thu Jan 31 16:50:08 2019 : Debug: (2) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (2) State = 0x1e4749eb1c42506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (2) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:08 2019 : Debug: (3) Received Access-Request Id 30 from 10.1.150.240:52317 to 193.170.213.151:1820 length 275
Thu Jan 31 16:50:08 2019 : Debug: (3) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (3) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (3) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (3) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (3) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (3) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (3) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (3) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (3) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (3) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (3) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (3) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (3) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (3) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (3) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (3) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (3) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (3) EAP-Message = 0x020500061900
Thu Jan 31 16:50:08 2019 : Debug: (3) State = 0x1e4749eb1c42506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (3) Message-Authenticator = 0x8982b28c4defb0d25e2490a6c33657d0
Thu Jan 31 16:50:08 2019 : Debug: (3) session-state: No cached attributes
Thu Jan 31 16:50:08 2019 : Debug: (3) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (3) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (3) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (3) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (3) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (3) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (3) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (3) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (3) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (3) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (3) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (3) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (3) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (3) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (3) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (3) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (3) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (3) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (3) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (3) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (3) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (3) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (3) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (3) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (3) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (3) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (3) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Peer sent EAP Response (code 2) ID 5 length 6
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Continuing tunnel setup
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (3) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (3) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (3) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (3) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (3)
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (3) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (3)
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (3) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (3) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (3) update {
Thu Jan 31 16:50:08 2019 : Debug: (3) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (3) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (3) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (3) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (3) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (3) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (3) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (3) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Expiring EAP session with state 0x1e4749eb1c42506c
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Finished EAP session with state 0x1e4749eb1c42506c
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Previous EAP request found for state 0x1e4749eb1c42506c, released from the list
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (3) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:08 2019 : Debug: (3) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:08 2019 : Debug: (3) eap_peap: Peer ACKed our handshake fragment
Thu Jan 31 16:50:08 2019 : Debug: (3) eap_peap: [eaptls verify] = request
Thu Jan 31 16:50:08 2019 : Debug: (3) eap_peap: [eaptls process] = handled
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: Sending EAP Request (code 1) ID 6 length 1000
Thu Jan 31 16:50:08 2019 : Debug: (3) eap: EAP session adding &reply:State = 0x1e4749eb1d41506c
Thu Jan 31 16:50:08 2019 : Debug: (3) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (3) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (3) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (3) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (3) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (3) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (3) Sent Access-Challenge Id 30 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (3) EAP-Message = 0x010603e81940d60566ce1ec02c9f0b5aa4bb6ee5649ebee59c11bd9ce4aacc91f5c6052574298ba787d6744587dc05eaeccee7f3224636043bd5656e1fa4a82966da5aa54e9c7809476a1300ef2882faa10d93d486bf91e7a38e9202c8764951714aad5e1ead0004ff308204fb308203e3a00302010202
Thu Jan 31 16:50:08 2019 : Debug: (3) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (3) State = 0x1e4749eb1d41506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (3) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:08 2019 : Debug: (4) Received Access-Request Id 31 from 10.1.150.240:52317 to 193.170.213.151:1820 length 275
Thu Jan 31 16:50:08 2019 : Debug: (4) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (4) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (4) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (4) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (4) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (4) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (4) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (4) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (4) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (4) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (4) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (4) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (4) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (4) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (4) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (4) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (4) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (4) EAP-Message = 0x020600061900
Thu Jan 31 16:50:08 2019 : Debug: (4) State = 0x1e4749eb1d41506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (4) Message-Authenticator = 0xd1c90b321ee2d3912c732913f6cae1d9
Thu Jan 31 16:50:08 2019 : Debug: (4) session-state: No cached attributes
Thu Jan 31 16:50:08 2019 : Debug: (4) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (4) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (4) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (4) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (4) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (4) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (4) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (4) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (4) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (4) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (4) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (4) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (4) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (4) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (4) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (4) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (4) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (4) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (4) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (4) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (4) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (4) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (4) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (4) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (4) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (4) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (4) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Peer sent EAP Response (code 2) ID 6 length 6
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Continuing tunnel setup
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (4) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (4) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (4) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (4) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (4)
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (4) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (4)
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (4) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (4) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (4) update {
Thu Jan 31 16:50:08 2019 : Debug: (4) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (4) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (4) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (4) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (4) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (4) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (4) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (4) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Expiring EAP session with state 0x1e4749eb1d41506c
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Finished EAP session with state 0x1e4749eb1d41506c
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Previous EAP request found for state 0x1e4749eb1d41506c, released from the list
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (4) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:08 2019 : Debug: (4) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:08 2019 : Debug: (4) eap_peap: Peer ACKed our handshake fragment
Thu Jan 31 16:50:08 2019 : Debug: (4) eap_peap: [eaptls verify] = request
Thu Jan 31 16:50:08 2019 : Debug: (4) eap_peap: [eaptls process] = handled
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: Sending EAP Request (code 1) ID 7 length 993
Thu Jan 31 16:50:08 2019 : Debug: (4) eap: EAP session adding &reply:State = 0x1e4749eb1a40506c
Thu Jan 31 16:50:08 2019 : Debug: (4) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (4) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (4) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (4) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (4) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (4) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (4) Sent Access-Challenge Id 31 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (4) EAP-Message = 0x010703e11900302a302806082b06010505070201161c68747470733a2f2f7777772e64696769636572742e636f6d2f435053301d0603551d0e0416041467fd8820142798c709d22519bbe9511163755062301f0603551d2304183016801445eba2aff492cb82312d518ba7a7219df36dc80f300d06092a
Thu Jan 31 16:50:08 2019 : Debug: (4) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (4) State = 0x1e4749eb1a40506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (4) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:08 2019 : Debug: (5) Received Access-Request Id 32 from 10.1.150.240:52317 to 193.170.213.151:1820 length 405
Thu Jan 31 16:50:08 2019 : Debug: (5) User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (5) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:08 2019 : Debug: (5) Location-Capable = Civic-Location
Thu Jan 31 16:50:08 2019 : Debug: (5) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:08 2019 : Debug: (5) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:08 2019 : Debug: (5) NAS-Port = 8
Thu Jan 31 16:50:08 2019 : Debug: (5) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:08 2019 : Debug: (5) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:08 2019 : Debug: (5) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:08 2019 : Debug: (5) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:08 2019 : Debug: (5) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:08 2019 : Debug: (5) Service-Type = Framed-User
Thu Jan 31 16:50:08 2019 : Debug: (5) Framed-MTU = 1300
Thu Jan 31 16:50:08 2019 : Debug: (5) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:08 2019 : Debug: (5) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:08 2019 : Debug: (5) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:08 2019 : Debug: (5) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:08 2019 : Debug: (5) EAP-Message = 0x0207008819800000007e1603030046100000424104fe2ed858a4add92a7e5b399052f5e603092dd3b3ff6e20723ceee7127491e7b71f8f208553794eb9b6b734358d34843c9aca277acb6d78f09b0f445da59d9da914030300010116030300280000000000000000c275dc9c32b74d4ff44e5d788b72ac
Thu Jan 31 16:50:08 2019 : Debug: (5) State = 0x1e4749eb1a40506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (5) Message-Authenticator = 0x5d018a270b1ecca9306369c6d9cdd168
Thu Jan 31 16:50:08 2019 : Debug: (5) session-state: No cached attributes
Thu Jan 31 16:50:08 2019 : Debug: (5) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (5) authorize {
Thu Jan 31 16:50:08 2019 : Debug: (5) policy filter_username {
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name) -> TRUE
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name) {
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ / /) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:08 2019 : Debug: No matches
Thu Jan 31 16:50:08 2019 : Debug: (5) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:08 2019 : Debug: (5) } # if (&User-Name) = notfound
Thu Jan 31 16:50:08 2019 : Debug: (5) } # policy filter_username = notfound
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:08 2019 : Debug: (5) [preprocess] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (5) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (5) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (5) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (5) auth_log: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (5) auth_log: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (5) [auth_log] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:08 2019 : Debug: percent --> Y
Thu Jan 31 16:50:08 2019 : Debug: percent --> m
Thu Jan 31 16:50:08 2019 : Debug: percent --> d
Thu Jan 31 16:50:08 2019 : Debug: (5) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:08 2019 : Debug: (5) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: (5) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:08 2019 : Debug: %t
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: percent --> t
Thu Jan 31 16:50:08 2019 : Debug: (5) detail: EXPAND %t
Thu Jan 31 16:50:08 2019 : Debug: (5) detail: --> Thu Jan 31 16:50:08 2019
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:08 2019 : Debug: (5) [detail] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: Found realm "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:08 2019 : Debug: (5) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:08 2019 : Debug: (5) [suffix] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (5) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:08 2019 : Debug: (5) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:08 2019 : Debug: (5) files: ::: Examining Fall-Through
Thu Jan 31 16:50:08 2019 : Debug: (5) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:08 2019 : Debug: (5) files: ::: TO in 0 out 0
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:08 2019 : Debug: (5) [files] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Peer sent EAP Response (code 2) ID 7 length 136
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Continuing tunnel setup
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (5) [eap] = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) } # authorize = ok
Thu Jan 31 16:50:08 2019 : Debug: (5) Using Autz-Type LDAP
Thu Jan 31 16:50:08 2019 : Debug: (5) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (5) Autz-Type LDAP {
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (0)
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:08 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:08 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:08 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:08 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:08 2019 : Debug: }
Thu Jan 31 16:50:08 2019 : Debug: literal --> )
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:08 2019 : Debug: (5) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:08 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (0)
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:08 2019 : Debug: (5) [mdwacc_wlan] = updated
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:08 2019 : Debug: (5) [mschap] = noop
Thu Jan 31 16:50:08 2019 : Debug: (5) update {
Thu Jan 31 16:50:08 2019 : Debug: (5) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:08 2019 : Debug: (5) --> koehne
Thu Jan 31 16:50:08 2019 : Debug: (5) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:08 2019 : Debug: (5) } # update = noop
Thu Jan 31 16:50:08 2019 : Debug: (5) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:08 2019 : Debug: (5) Found Auth-Type = eap
Thu Jan 31 16:50:08 2019 : Debug: (5) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:08 2019 : Debug: (5) authenticate {
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Expiring EAP session with state 0x1e4749eb1a40506c
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Finished EAP session with state 0x1e4749eb1a40506c
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Previous EAP request found for state 0x1e4749eb1a40506c, released from the list
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: Peer sent flags --L
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: Peer indicated complete TLS record size will be 126 bytes
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: Got complete TLS record (126 bytes)
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: [eaptls verify] = length included
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: <<< recv TLS 1.2 [length 0046]
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 read client key exchange A
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 read certificate verify A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: <<< recv TLS 1.2 [length 0001]
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: <<< recv TLS 1.2 [length 0010]
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 read finished A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: >>> send TLS 1.2 [length 0001]
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 write change cipher spec A
Thu Jan 31 16:50:08 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: >>> send TLS 1.2 [length 0010]
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 write finished A
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: TLS_accept: SSLv3 flush data
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: (other): SSL negotiation finished successfully
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: SSL Connection Established
Thu Jan 31 16:50:08 2019 : Debug: (5) eap_peap: [eaptls process] = handled
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: Sending EAP Request (code 1) ID 8 length 57
Thu Jan 31 16:50:08 2019 : Debug: (5) eap: EAP session adding &reply:State = 0x1e4749eb1b4f506c
Thu Jan 31 16:50:08 2019 : Debug: (5) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:08 2019 : Debug: (5) [eap] = handled
Thu Jan 31 16:50:08 2019 : Debug: (5) } # authenticate = handled
Thu Jan 31 16:50:08 2019 : Debug: (5) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:08 2019 : Debug: (5) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:08 2019 : Debug: (5) session-state: Nothing to cache
Thu Jan 31 16:50:08 2019 : Debug: (5) Sent Access-Challenge Id 32 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:08 2019 : Debug: (5) EAP-Message = 0x0108003919001403030001011603030028c14339b4ab0a9bc333f2606bb9fd29ca266e2908e333c6598f806bbf64e37598ef27062ff4abe663
Thu Jan 31 16:50:08 2019 : Debug: (5) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:08 2019 : Debug: (5) State = 0x1e4749eb1b4f506cb05cc05117fef29d
Thu Jan 31 16:50:08 2019 : Debug: (5) Finished request
Thu Jan 31 16:50:08 2019 : Debug: Waking up in 4.9 seconds.
Thu Jan 31 16:50:09 2019 : Debug: (6) Received Access-Request Id 33 from 10.1.150.240:52317 to 193.170.213.151:1820 length 275
Thu Jan 31 16:50:09 2019 : Debug: (6) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (6) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:09 2019 : Debug: (6) Location-Capable = Civic-Location
Thu Jan 31 16:50:09 2019 : Debug: (6) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:09 2019 : Debug: (6) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:09 2019 : Debug: (6) NAS-Port = 8
Thu Jan 31 16:50:09 2019 : Debug: (6) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:09 2019 : Debug: (6) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:09 2019 : Debug: (6) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:09 2019 : Debug: (6) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:09 2019 : Debug: (6) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:09 2019 : Debug: (6) Service-Type = Framed-User
Thu Jan 31 16:50:09 2019 : Debug: (6) Framed-MTU = 1300
Thu Jan 31 16:50:09 2019 : Debug: (6) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:09 2019 : Debug: (6) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:09 2019 : Debug: (6) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:09 2019 : Debug: (6) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:09 2019 : Debug: (6) EAP-Message = 0x020800061900
Thu Jan 31 16:50:09 2019 : Debug: (6) State = 0x1e4749eb1b4f506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (6) Message-Authenticator = 0x471314abf843ea70ebb53784f01dfa6f
Thu Jan 31 16:50:09 2019 : Debug: (6) session-state: No cached attributes
Thu Jan 31 16:50:09 2019 : Debug: (6) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (6) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (6) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (6) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (6) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (6) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (6) [preprocess] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (6) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (6) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (6) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (6) auth_log: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (6) auth_log: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (6) [auth_log] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (6) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (6) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (6) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (6) detail: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (6) detail: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (6) [detail] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (6) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (6) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (6) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:09 2019 : Debug: (6) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:09 2019 : Debug: (6) files: ::: Examining Fall-Through
Thu Jan 31 16:50:09 2019 : Debug: (6) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:09 2019 : Debug: (6) files: ::: TO in 0 out 0
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (6) [files] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Peer sent EAP Response (code 2) ID 8 length 6
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Continuing tunnel setup
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (6) [eap] = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) } # authorize = ok
Thu Jan 31 16:50:09 2019 : Debug: (6) Using Autz-Type LDAP
Thu Jan 31 16:50:09 2019 : Debug: (6) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (6) Autz-Type LDAP {
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (1)
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:09 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> )
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:09 2019 : Debug: (6) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (1)
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (6) [mdwacc_wlan] = updated
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (6) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (6) update {
Thu Jan 31 16:50:09 2019 : Debug: (6) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:09 2019 : Debug: (6) --> koehne
Thu Jan 31 16:50:09 2019 : Debug: (6) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:09 2019 : Debug: (6) } # update = noop
Thu Jan 31 16:50:09 2019 : Debug: (6) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:09 2019 : Debug: (6) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (6) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (6) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Expiring EAP session with state 0x1e4749eb1b4f506c
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Finished EAP session with state 0x1e4749eb1b4f506c
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Previous EAP request found for state 0x1e4749eb1b4f506c, released from the list
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: Peer ACKed our handshake fragment. handshake is finished
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: [eaptls verify] = success
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: [eaptls process] = success
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: Session established. Decoding tunneled attributes
Thu Jan 31 16:50:09 2019 : Debug: (6) eap_peap: PEAP state TUNNEL ESTABLISHED
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: Sending EAP Request (code 1) ID 9 length 40
Thu Jan 31 16:50:09 2019 : Debug: (6) eap: EAP session adding &reply:State = 0x1e4749eb184e506c
Thu Jan 31 16:50:09 2019 : Debug: (6) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (6) [eap] = handled
Thu Jan 31 16:50:09 2019 : Debug: (6) } # authenticate = handled
Thu Jan 31 16:50:09 2019 : Debug: (6) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:09 2019 : Debug: (6) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:09 2019 : Debug: (6) session-state: Nothing to cache
Thu Jan 31 16:50:09 2019 : Debug: (6) Sent Access-Challenge Id 33 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:09 2019 : Debug: (6) EAP-Message = 0x010900281900170303001dc14339b4ab0a9bc4264b4e5f06b1275076b09bb96c87d84ae7fab90424
Thu Jan 31 16:50:09 2019 : Debug: (6) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (6) State = 0x1e4749eb184e506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (6) Finished request
Thu Jan 31 16:50:09 2019 : Debug: Waking up in 3.6 seconds.
Thu Jan 31 16:50:09 2019 : Debug: (7) Received Access-Request Id 34 from 10.1.150.240:52317 to 193.170.213.151:1820 length 311
Thu Jan 31 16:50:09 2019 : Debug: (7) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (7) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:09 2019 : Debug: (7) Location-Capable = Civic-Location
Thu Jan 31 16:50:09 2019 : Debug: (7) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:09 2019 : Debug: (7) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:09 2019 : Debug: (7) NAS-Port = 8
Thu Jan 31 16:50:09 2019 : Debug: (7) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:09 2019 : Debug: (7) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:09 2019 : Debug: (7) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:09 2019 : Debug: (7) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:09 2019 : Debug: (7) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:09 2019 : Debug: (7) Service-Type = Framed-User
Thu Jan 31 16:50:09 2019 : Debug: (7) Framed-MTU = 1300
Thu Jan 31 16:50:09 2019 : Debug: (7) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:09 2019 : Debug: (7) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:09 2019 : Debug: (7) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:09 2019 : Debug: (7) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:09 2019 : Debug: (7) EAP-Message = 0x0209002a1900170303001f0000000000000001f1d2b00b4c1282ea453ba9b05fd360b47e1b44d683221e
Thu Jan 31 16:50:09 2019 : Debug: (7) State = 0x1e4749eb184e506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (7) Message-Authenticator = 0x0284fb9d61d9e85474725370af215f0a
Thu Jan 31 16:50:09 2019 : Debug: (7) session-state: No cached attributes
Thu Jan 31 16:50:09 2019 : Debug: (7) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (7) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (7) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (7) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (7) [preprocess] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (7) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (7) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (7) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (7) auth_log: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (7) auth_log: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (7) [auth_log] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (7) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (7) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (7) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (7) detail: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (7) detail: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (7) [detail] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (7) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (7) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:09 2019 : Debug: (7) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:09 2019 : Debug: (7) files: ::: Examining Fall-Through
Thu Jan 31 16:50:09 2019 : Debug: (7) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:09 2019 : Debug: (7) files: ::: TO in 0 out 0
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (7) [files] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Peer sent EAP Response (code 2) ID 9 length 42
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Continuing tunnel setup
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [eap] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) } # authorize = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) Using Autz-Type LDAP
Thu Jan 31 16:50:09 2019 : Debug: (7) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (7) Autz-Type LDAP {
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (2)
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:09 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> )
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:09 2019 : Debug: (7) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (2)
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [mdwacc_wlan] = updated
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (7) update {
Thu Jan 31 16:50:09 2019 : Debug: (7) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:09 2019 : Debug: (7) --> koehne
Thu Jan 31 16:50:09 2019 : Debug: (7) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:09 2019 : Debug: (7) } # update = noop
Thu Jan 31 16:50:09 2019 : Debug: (7) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:09 2019 : Debug: (7) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (7) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (7) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Expiring EAP session with state 0x1e4749eb184e506c
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Finished EAP session with state 0x1e4749eb184e506c
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Previous EAP request found for state 0x1e4749eb184e506c, released from the list
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: [eaptls verify] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Done initial handshake
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: [eaptls process] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Session established. Decoding tunneled attributes
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: PEAP state WAITING FOR INNER IDENTITY
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Identity - koehne
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Got inner identity 'koehne'
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Setting default EAP type for tunneled EAP session
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Got tunneled request
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: EAP-Message = 0x0209000b016b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Setting User-Name to koehne
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Sending tunneled request to inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: EAP-Message = 0x0209000b016b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: FreeRADIUS-Proxied-To = 127.0.0.1
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (7) Virtual server inner-tunnel received request
Thu Jan 31 16:50:09 2019 : Debug: (7) EAP-Message = 0x0209000b016b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (7) FreeRADIUS-Proxied-To = 127.0.0.1
Thu Jan 31 16:50:09 2019 : Debug: (7) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : WARNING: (7) Outer and inner identities are the same. User privacy is compromised.
Thu Jan 31 16:50:09 2019 : Debug: (7) server inner-tunnel {
Thu Jan 31 16:50:09 2019 : Debug: (7) session-state: No State attribute
Thu Jan 31 16:50:09 2019 : Debug: (7) # Executing section authorize from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (7) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (7) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (7) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (7) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (7) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling chap (rlm_chap)
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from chap (rlm_chap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [chap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (7) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (7) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) update control {
Thu Jan 31 16:50:09 2019 : Debug: (7) &Proxy-To-Realm := LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (7) } # update control = noop
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Peer sent EAP Response (code 2) ID 9 length 11
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: EAP-Identity reply, returning 'ok' so we can short-circuit the rest of authorize
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [eap] = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) } # authorize = ok
Thu Jan 31 16:50:09 2019 : Debug: (7) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (7) # Executing group from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (7) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Peer sent packet with method EAP Identity (1)
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Calling submodule eap_mschapv2 to process data
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_mschapv2: Issuing Challenge
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Sending EAP Request (code 1) ID 10 length 43
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: EAP session adding &reply:State = 0xc671a795c67bbdea
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [eap] = handled
Thu Jan 31 16:50:09 2019 : Debug: (7) } # authenticate = handled
Thu Jan 31 16:50:09 2019 : Debug: (7) } # server inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (7) Virtual server sending reply
Thu Jan 31 16:50:09 2019 : Debug: (7) EAP-Message = 0x010a002b1a010a002610ede363c941ef362c828d096561d8b561667265657261646975732d332e302e3135
Thu Jan 31 16:50:09 2019 : Debug: (7) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (7) State = 0xc671a795c67bbdea939cb63df3077c7e
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Got tunneled reply code 11
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: EAP-Message = 0x010a002b1a010a002610ede363c941ef362c828d096561d8b561667265657261646975732d332e302e3135
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: State = 0xc671a795c67bbdea939cb63df3077c7e
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Got tunneled reply RADIUS code 11
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: EAP-Message = 0x010a002b1a010a002610ede363c941ef362c828d096561d8b561667265657261646975732d332e302e3135
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: State = 0xc671a795c67bbdea939cb63df3077c7e
Thu Jan 31 16:50:09 2019 : Debug: (7) eap_peap: Got tunneled Access-Challenge
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: Sending EAP Request (code 1) ID 10 length 74
Thu Jan 31 16:50:09 2019 : Debug: (7) eap: EAP session adding &reply:State = 0x1e4749eb194d506c
Thu Jan 31 16:50:09 2019 : Debug: (7) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (7) [eap] = handled
Thu Jan 31 16:50:09 2019 : Debug: (7) } # authenticate = handled
Thu Jan 31 16:50:09 2019 : Debug: (7) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:09 2019 : Debug: (7) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:09 2019 : Debug: (7) session-state: Nothing to cache
Thu Jan 31 16:50:09 2019 : Debug: (7) Sent Access-Challenge Id 34 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:09 2019 : Debug: (7) EAP-Message = 0x010a004a1900170303003fc14339b4ab0a9bc5e722e99d0e915ba914143c8c612e4b9b2f2e83b612ab71cb1d79630075dec1c29ee2765c6a1562313bc7b2b38b0c2a3a364574bae36adc
Thu Jan 31 16:50:09 2019 : Debug: (7) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (7) State = 0x1e4749eb194d506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (7) Finished request
Thu Jan 31 16:50:09 2019 : Debug: Waking up in 3.6 seconds.
Thu Jan 31 16:50:09 2019 : Debug: (8) Received Access-Request Id 35 from 10.1.150.240:52317 to 193.170.213.151:1820 length 365
Thu Jan 31 16:50:09 2019 : Debug: (8) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (8) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:09 2019 : Debug: (8) Location-Capable = Civic-Location
Thu Jan 31 16:50:09 2019 : Debug: (8) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:09 2019 : Debug: (8) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:09 2019 : Debug: (8) NAS-Port = 8
Thu Jan 31 16:50:09 2019 : Debug: (8) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:09 2019 : Debug: (8) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:09 2019 : Debug: (8) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:09 2019 : Debug: (8) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:09 2019 : Debug: (8) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:09 2019 : Debug: (8) Service-Type = Framed-User
Thu Jan 31 16:50:09 2019 : Debug: (8) Framed-MTU = 1300
Thu Jan 31 16:50:09 2019 : Debug: (8) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:09 2019 : Debug: (8) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:09 2019 : Debug: (8) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:09 2019 : Debug: (8) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:09 2019 : Debug: (8) EAP-Message = 0x020a0060190017030300550000000000000002424328353d19db119c0d9cedb8eebb26e9c53c60984f4d23791dcfda99c753aac1f2964bc866ed6add76271e54bd8864b687157610ca75d83debd681c99853df2e9456a6d34f24d34547e08cf8
Thu Jan 31 16:50:09 2019 : Debug: (8) State = 0x1e4749eb194d506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (8) Message-Authenticator = 0xe5e119af00a0f4f5278e80fe31228c32
Thu Jan 31 16:50:09 2019 : Debug: (8) session-state: No cached attributes
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (8) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (8) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (8) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (8) [preprocess] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (8) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (8) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (8) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (8) auth_log: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (8) auth_log: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (8) [auth_log] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (8) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (8) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (8) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (8) detail: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (8) detail: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (8) [detail] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (8) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (8) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:09 2019 : Debug: (8) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:09 2019 : Debug: (8) files: ::: Examining Fall-Through
Thu Jan 31 16:50:09 2019 : Debug: (8) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:09 2019 : Debug: (8) files: ::: TO in 0 out 0
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (8) [files] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Peer sent EAP Response (code 2) ID 10 length 96
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Continuing tunnel setup
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [eap] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) } # authorize = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) Using Autz-Type LDAP
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (8) Autz-Type LDAP {
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (3)
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:09 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> )
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:09 2019 : Debug: (8) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (3)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [mdwacc_wlan] = updated
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) update {
Thu Jan 31 16:50:09 2019 : Debug: (8) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:09 2019 : Debug: (8) --> koehne
Thu Jan 31 16:50:09 2019 : Debug: (8) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:09 2019 : Debug: (8) } # update = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:09 2019 : Debug: (8) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (8) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Expiring EAP session with state 0xc671a795c67bbdea
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Finished EAP session with state 0x1e4749eb194d506c
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Previous EAP request found for state 0x1e4749eb194d506c, released from the list
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: [eaptls verify] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Done initial handshake
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: [eaptls process] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Session established. Decoding tunneled attributes
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: PEAP state phase2
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: EAP method MSCHAPv2 (26)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Got tunneled request
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: EAP-Message = 0x020a00411a020a003c31070d53c306d0b2833c481c93d6a12a150000000000000000ce3e1f5853258b255f58a57ca4164edc649202e05c3e3811006b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Setting User-Name to koehne
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Sending tunneled request to inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: EAP-Message = 0x020a00411a020a003c31070d53c306d0b2833c481c93d6a12a150000000000000000ce3e1f5853258b255f58a57ca4164edc649202e05c3e3811006b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: FreeRADIUS-Proxied-To = 127.0.0.1
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: State = 0xc671a795c67bbdea939cb63df3077c7e
Thu Jan 31 16:50:09 2019 : Debug: (8) Virtual server inner-tunnel received request
Thu Jan 31 16:50:09 2019 : Debug: (8) EAP-Message = 0x020a00411a020a003c31070d53c306d0b2833c481c93d6a12a150000000000000000ce3e1f5853258b255f58a57ca4164edc649202e05c3e3811006b6f65686e65
Thu Jan 31 16:50:09 2019 : Debug: (8) FreeRADIUS-Proxied-To = 127.0.0.1
Thu Jan 31 16:50:09 2019 : Debug: (8) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (8) State = 0xc671a795c67bbdea939cb63df3077c7e
Thu Jan 31 16:50:09 2019 : WARNING: (8) Outer and inner identities are the same. User privacy is compromised.
Thu Jan 31 16:50:09 2019 : Debug: (8) server inner-tunnel {
Thu Jan 31 16:50:09 2019 : Debug: (8) session-state: No cached attributes
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing section authorize from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (8) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (8) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (8) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (8) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling chap (rlm_chap)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from chap (rlm_chap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [chap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (8) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (8) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (8) update control {
Thu Jan 31 16:50:09 2019 : Debug: (8) &Proxy-To-Realm := LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (8) } # update control = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Peer sent EAP Response (code 2) ID 10 length 65
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: No EAP Start, assuming it's an on-going EAP conversation
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [eap] = updated
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (8) [files] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling expiration (rlm_expiration)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from expiration (rlm_expiration)
Thu Jan 31 16:50:09 2019 : Debug: (8) [expiration] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling logintime (rlm_logintime)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from logintime (rlm_logintime)
Thu Jan 31 16:50:09 2019 : Debug: (8) [logintime] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: calling pap (rlm_pap)
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authorize]: returned from pap (rlm_pap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [pap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) } # authorize = updated
Thu Jan 31 16:50:09 2019 : Debug: (8) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing group from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Expiring EAP session with state 0xc671a795c67bbdea
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Finished EAP session with state 0xc671a795c67bbdea
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Previous EAP request found for state 0xc671a795c67bbdea, released from the list
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Peer sent packet with method EAP MSCHAPv2 (26)
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Calling submodule eap_mschapv2 to process data
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_mschapv2: # Executing group from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_mschapv2: authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_mschapv2: modsingle[authenticate]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : WARNING: (8) mschap: No Cleartext-Password configured. Cannot create NT-Password
Thu Jan 31 16:50:09 2019 : WARNING: (8) mschap: No Cleartext-Password configured. Cannot create LM-Password
Thu Jan 31 16:50:09 2019 : Debug: (8) mschap: Creating challenge hash with username: koehne
Thu Jan 31 16:50:09 2019 : Debug: (8) mschap: Client is using MS-CHAPv2
Thu Jan 31 16:50:09 2019 : ERROR: (8) mschap: FAILED: No NT/LM-Password. Cannot perform authentication
Thu Jan 31 16:50:09 2019 : ERROR: (8) mschap: MS-CHAP2-Response is incorrect
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authenticate]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [mschap] = reject
Thu Jan 31 16:50:09 2019 : Debug: (8) } # authenticate = reject
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Sending EAP Failure (code 4) ID 10 length 4
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Freeing handler
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [eap] = reject
Thu Jan 31 16:50:09 2019 : Debug: (8) } # authenticate = reject
Thu Jan 31 16:50:09 2019 : Debug: (8) Failed to authenticate the user
Thu Jan 31 16:50:09 2019 : Debug: (8) Using Post-Auth-Type Reject
Thu Jan 31 16:50:09 2019 : Debug: (8) # Executing group from file /etc/raddb/sites-enabled/inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) Post-Auth-Type REJECT {
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[post-auth]: calling attr_filter.access_reject (rlm_attr_filter)
Thu Jan 31 16:50:09 2019 : Debug: %{User-Name}
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: EXPAND %{User-Name}
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: --> koehne
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: Matched entry DEFAULT at line 11
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: MS-CHAP-Error = "\nE=691 R=1 C=3137846a52bca9c3647f202f29739b5e V=3 M=Authentication failed" allowed by MS-CHAP-Error =* ""
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: Attribute "MS-CHAP-Error" allowed by 1 rules, disallowed by 0 rules
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: EAP-Message = 0x040a0004 allowed by EAP-Message =* 0x
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: Attribute "EAP-Message" allowed by 1 rules, disallowed by 0 rules
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: Message-Authenticator = 0x00000000000000000000000000000000 allowed by Message-Authenticator =* 0x
Thu Jan 31 16:50:09 2019 : Debug: (8) attr_filter.access_reject: Attribute "Message-Authenticator" allowed by 1 rules, disallowed by 0 rules
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[post-auth]: returned from attr_filter.access_reject (rlm_attr_filter)
Thu Jan 31 16:50:09 2019 : Debug: (8) [attr_filter.access_reject] = updated
Thu Jan 31 16:50:09 2019 : Debug: (8) update outer.session-state {
Thu Jan 31 16:50:09 2019 : Debug: (8) &Module-Failure-Message := &request:Module-Failure-Message -> 'mschap: FAILED: No NT/LM-Password. Cannot perform authentication'
Thu Jan 31 16:50:09 2019 : Debug: (8) } # update outer.session-state = noop
Thu Jan 31 16:50:09 2019 : Debug: (8) } # Post-Auth-Type REJECT = updated
Thu Jan 31 16:50:09 2019 : Auth: (8) Login incorrect (mschap: FAILED: No NT/LM-Password. Cannot perform authentication): [koehne] (from client aw-wism port 0 via TLS tunnel)
Thu Jan 31 16:50:09 2019 : Debug: (8) } # server inner-tunnel
Thu Jan 31 16:50:09 2019 : Debug: (8) Virtual server sending reply
Thu Jan 31 16:50:09 2019 : Debug: (8) MS-CHAP-Error = "\nE=691 R=1 C=3137846a52bca9c3647f202f29739b5e V=3 M=Authentication failed"
Thu Jan 31 16:50:09 2019 : Debug: (8) EAP-Message = 0x040a0004
Thu Jan 31 16:50:09 2019 : Debug: (8) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Got tunneled reply code 3
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: MS-CHAP-Error = "\nE=691 R=1 C=3137846a52bca9c3647f202f29739b5e V=3 M=Authentication failed"
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: EAP-Message = 0x040a0004
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Got tunneled reply RADIUS code 3
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: MS-CHAP-Error = "\nE=691 R=1 C=3137846a52bca9c3647f202f29739b5e V=3 M=Authentication failed"
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: EAP-Message = 0x040a0004
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: Tunneled authentication was rejected
Thu Jan 31 16:50:09 2019 : Debug: (8) eap_peap: FAILURE
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: Sending EAP Request (code 1) ID 11 length 46
Thu Jan 31 16:50:09 2019 : Debug: (8) eap: EAP session adding &reply:State = 0x1e4749eb164c506c
Thu Jan 31 16:50:09 2019 : Debug: (8) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (8) [eap] = handled
Thu Jan 31 16:50:09 2019 : Debug: (8) } # authenticate = handled
Thu Jan 31 16:50:09 2019 : Debug: (8) Using Post-Auth-Type Challenge
Thu Jan 31 16:50:09 2019 : Debug: (8) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:09 2019 : Debug: (8) session-state: Saving cached attributes
Thu Jan 31 16:50:09 2019 : Debug: (8) Module-Failure-Message := "mschap: FAILED: No NT/LM-Password. Cannot perform authentication"
Thu Jan 31 16:50:09 2019 : Debug: (8) Sent Access-Challenge Id 35 from 193.170.213.151:1820 to 10.1.150.240:52317 length 0
Thu Jan 31 16:50:09 2019 : Debug: (8) EAP-Message = 0x010b002e19001703030023c14339b4ab0a9bc65db5a6320246ccf821869a5ed455e4017d2cb3ad6a7cbef0f73431
Thu Jan 31 16:50:09 2019 : Debug: (8) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:09 2019 : Debug: (8) State = 0x1e4749eb164c506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (8) Finished request
Thu Jan 31 16:50:09 2019 : Debug: Waking up in 3.6 seconds.
Thu Jan 31 16:50:09 2019 : Debug: (9) Received Access-Request Id 36 from 10.1.150.240:52317 to 193.170.213.151:1820 length 315
Thu Jan 31 16:50:09 2019 : Debug: (9) User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (9) Chargeable-User-Identity = 0xf0
Thu Jan 31 16:50:09 2019 : Debug: (9) Location-Capable = Civic-Location
Thu Jan 31 16:50:09 2019 : Debug: (9) Calling-Station-Id = "c4-85-08-42-2c-5f"
Thu Jan 31 16:50:09 2019 : Debug: (9) Called-Station-Id = "f4-db-e6-0d-bc-00:wltest"
Thu Jan 31 16:50:09 2019 : Debug: (9) NAS-Port = 8
Thu Jan 31 16:50:09 2019 : Debug: (9) Cisco-AVPair = "audit-session-id=f096010a000007ea3019535c"
Thu Jan 31 16:50:09 2019 : Debug: (9) Acct-Session-Id = "5c531930/c4:85:08:42:2c:5f/3504"
Thu Jan 31 16:50:09 2019 : Debug: (9) NAS-IP-Address = 10.1.150.240
Thu Jan 31 16:50:09 2019 : Debug: (9) NAS-Identifier = "aw-wlc"
Thu Jan 31 16:50:09 2019 : Debug: (9) Airespace-Wlan-Id = 10
Thu Jan 31 16:50:09 2019 : Debug: (9) Service-Type = Framed-User
Thu Jan 31 16:50:09 2019 : Debug: (9) Framed-MTU = 1300
Thu Jan 31 16:50:09 2019 : Debug: (9) NAS-Port-Type = Wireless-802.11
Thu Jan 31 16:50:09 2019 : Debug: (9) Tunnel-Type:0 = VLAN
Thu Jan 31 16:50:09 2019 : Debug: (9) Tunnel-Medium-Type:0 = IEEE-802
Thu Jan 31 16:50:09 2019 : Debug: (9) Tunnel-Private-Group-Id:0 = "166"
Thu Jan 31 16:50:09 2019 : Debug: (9) EAP-Message = 0x020b002e190017030300230000000000000003a464b1bd09759975d957362f9fa56ca24e399bcf2d1b0db5033bdf
Thu Jan 31 16:50:09 2019 : Debug: (9) State = 0x1e4749eb164c506cb05cc05117fef29d
Thu Jan 31 16:50:09 2019 : Debug: (9) Message-Authenticator = 0x9daadb462fa20d220e5033bc42a6cd54
Thu Jan 31 16:50:09 2019 : Debug: (9) Restoring &session-state
Thu Jan 31 16:50:09 2019 : Debug: (9) &session-state:Module-Failure-Message := "mschap: FAILED: No NT/LM-Password. Cannot perform authentication"
Thu Jan 31 16:50:09 2019 : Debug: (9) # Executing section authorize from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (9) authorize {
Thu Jan 31 16:50:09 2019 : Debug: (9) policy filter_username {
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name) -> TRUE
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name) {
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ / /) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ / /) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /@[^@]*@/ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /@[^@]*@/ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /\.\./ ) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /\.\./ ) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if ((&User-Name =~ /@/) && (&User-Name !~ /@(.+)\.(.+)$/)) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /\.$/) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /\.$/) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /@\./) {
Thu Jan 31 16:50:09 2019 : Debug: No matches
Thu Jan 31 16:50:09 2019 : Debug: (9) if (&User-Name =~ /@\./) -> FALSE
Thu Jan 31 16:50:09 2019 : Debug: (9) } # if (&User-Name) = notfound
Thu Jan 31 16:50:09 2019 : Debug: (9) } # policy filter_username = notfound
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from preprocess (rlm_preprocess)
Thu Jan 31 16:50:09 2019 : Debug: (9) [preprocess] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /auth-detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (9) auth_log: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (9) auth_log: --> /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (9) auth_log: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/auth-detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/auth-detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (9) auth_log: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (9) auth_log: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from auth_log (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (9) [auth_log] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> /var/log/radius/radacct/
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IP-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Packet-Src-IPv6-Address
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> /detail-
Thu Jan 31 16:50:09 2019 : Debug: percent --> Y
Thu Jan 31 16:50:09 2019 : Debug: percent --> m
Thu Jan 31 16:50:09 2019 : Debug: percent --> d
Thu Jan 31 16:50:09 2019 : Debug: (9) detail: EXPAND /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d
Thu Jan 31 16:50:09 2019 : Debug: (9) detail: --> /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: (9) detail: /var/log/radius/radacct/%{%{Packet-Src-IP-Address}:-%{Packet-Src-IPv6-Address}}/detail-%Y%m%d expands to /var/log/radius/radacct/10.1.150.240/detail-20190131
Thu Jan 31 16:50:09 2019 : Debug: %t
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: percent --> t
Thu Jan 31 16:50:09 2019 : Debug: (9) detail: EXPAND %t
Thu Jan 31 16:50:09 2019 : Debug: (9) detail: --> Thu Jan 31 16:50:09 2019
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from detail (rlm_detail)
Thu Jan 31 16:50:09 2019 : Debug: (9) [detail] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: Checking for suffix after "@"
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: No '@' in User-Name = "koehne", looking up realm NULL
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: Found realm "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: Adding Stripped-User-Name = "koehne"
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: Adding Realm = "NULL"
Thu Jan 31 16:50:09 2019 : Debug: (9) suffix: Authentication realm is LOCAL
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from suffix (rlm_realm)
Thu Jan 31 16:50:09 2019 : Debug: (9) [suffix] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (9) files: users: Matched entry DEFAULT at line 188
Thu Jan 31 16:50:09 2019 : Debug: (9) files: ::: FROM 1 TO 0 MAX 1
Thu Jan 31 16:50:09 2019 : Debug: (9) files: ::: Examining Fall-Through
Thu Jan 31 16:50:09 2019 : Debug: (9) files: ::: APPENDING Fall-Through FROM 0 TO 0
Thu Jan 31 16:50:09 2019 : Debug: (9) files: ::: TO in 0 out 0
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from files (rlm_files)
Thu Jan 31 16:50:09 2019 : Debug: (9) [files] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Peer sent EAP Response (code 2) ID 11 length 46
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Continuing tunnel setup
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (9) [eap] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) } # authorize = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) Using Autz-Type LDAP
Thu Jan 31 16:50:09 2019 : Debug: (9) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (9) Autz-Type LDAP {
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Reserved connection (4)
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: EXPAND TMPL XLAT
Thu Jan 31 16:50:09 2019 : Debug: (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: Parsed xlat tree:
Thu Jan 31 16:50:09 2019 : Debug: literal --> (cn=
Thu Jan 31 16:50:09 2019 : Debug: XLAT-IF {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> Stripped-User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: XLAT-ELSE {
Thu Jan 31 16:50:09 2019 : Debug: attribute --> User-Name
Thu Jan 31 16:50:09 2019 : Debug: }
Thu Jan 31 16:50:09 2019 : Debug: literal --> )
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: EXPAND (cn=%{%{Stripped-User-Name}:-%{User-Name}})
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: --> (cn=koehne)
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: EXPAND TMPL LITERAL
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: Performing search in "" with filter "(cn=koehne)", scope "sub"
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: Waiting for search result...
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: User object found at DN "cn=koehne,ou=Personal,o=MDWds"
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: Processing user attributes
Thu Jan 31 16:50:09 2019 : Debug: (9) mdwacc_wlan: control:NT-Password := 0x3438343962306334346430613739643137346261343863383939323961383762
Thu Jan 31 16:50:09 2019 : Debug: rlm_ldap (mdwacc_wlan): Released connection (4)
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from mdwacc_wlan (rlm_ldap)
Thu Jan 31 16:50:09 2019 : Debug: (9) [mdwacc_wlan] = updated
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: calling mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authorize]: returned from mschap (rlm_mschap)
Thu Jan 31 16:50:09 2019 : Debug: (9) [mschap] = noop
Thu Jan 31 16:50:09 2019 : Debug: (9) update {
Thu Jan 31 16:50:09 2019 : Debug: (9) EXPAND %{mschap:User-Name}
Thu Jan 31 16:50:09 2019 : Debug: (9) --> koehne
Thu Jan 31 16:50:09 2019 : Debug: (9) &MS-CHAP-User-Name := koehne
Thu Jan 31 16:50:09 2019 : Debug: (9) } # update = noop
Thu Jan 31 16:50:09 2019 : Debug: (9) } # Autz-Type LDAP = updated
Thu Jan 31 16:50:09 2019 : Debug: (9) Found Auth-Type = eap
Thu Jan 31 16:50:09 2019 : Debug: (9) # Executing group from file /etc/raddb/sites-enabled/virtual-servers
Thu Jan 31 16:50:09 2019 : Debug: (9) authenticate {
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authenticate]: calling eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Expiring EAP session with state 0x1e4749eb164c506c
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Finished EAP session with state 0x1e4749eb164c506c
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Previous EAP request found for state 0x1e4749eb164c506c, released from the list
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Peer sent packet with method EAP PEAP (25)
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Calling submodule eap_peap to process data
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: Continuing EAP-TLS
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: Peer sent flags ---
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: [eaptls verify] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: Done initial handshake
Thu Jan 31 16:50:09 2019 : Debug: Ignoring cbtls_msg call with pseudo content type 256, version 0
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: [eaptls process] = ok
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: Session established. Decoding tunneled attributes
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: PEAP state send tlv failure
Thu Jan 31 16:50:09 2019 : Debug: (9) eap_peap: Received EAP-TLV response
Thu Jan 31 16:50:09 2019 : ERROR: (9) eap_peap: The users session was previously rejected: returning reject (again.)
Thu Jan 31 16:50:09 2019 : Info: (9) eap_peap: This means you need to read the PREVIOUS messages in the debug output
Thu Jan 31 16:50:09 2019 : Info: (9) eap_peap: to find out the reason why the user was rejected
Thu Jan 31 16:50:09 2019 : Info: (9) eap_peap: Look for "reject" or "fail". Those earlier messages will tell you
Thu Jan 31 16:50:09 2019 : Info: (9) eap_peap: what went wrong, and how to fix the problem
Thu Jan 31 16:50:09 2019 : ERROR: (9) eap: Failed continuing EAP PEAP (25) session. EAP sub-module failed
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Sending EAP Failure (code 4) ID 11 length 4
Thu Jan 31 16:50:09 2019 : Debug: (9) eap: Failed in EAP select
Thu Jan 31 16:50:09 2019 : Debug: (9) modsingle[authenticate]: returned from eap (rlm_eap)
Thu Jan 31 16:50:09 2019 : Debug: (9) [eap] = invalid
Thu Jan 31 16:50:09 2019 : Debug: (9) } # authenticate = invalid
Thu Jan 31 16:50:09 2019 : Debug: (9) Failed to authenticate the user
Thu Jan 31 16:50:09 2019 : Debug: (9) Using Post-Auth-Type Reject
Thu Jan 31 16:50:09 2019 : Debug: (9) Post-Auth-Type sub-section not found. Ignoring.
Thu Jan 31 16:50:09 2019 : Auth: (9) Login incorrect (eap_peap: The users session was previously rejected: returning reject (again.)): [koehne] (from client aw-wism port 8 cli c4-85-08-42-2c-5f)
Thu Jan 31 16:50:09 2019 : Debug: (9) Delaying response for 1.000000 seconds
Thu Jan 31 16:50:09 2019 : Debug: Waking up in 0.3 seconds.
Thu Jan 31 16:50:09 2019 : Debug: Waking up in 0.6 seconds.
Thu Jan 31 16:50:10 2019 : Debug: (9) Sending delayed response
Thu Jan 31 16:50:10 2019 : Debug: (9) Sent Access-Reject Id 36 from 193.170.213.151:1820 to 10.1.150.240:52317 length 44
Thu Jan 31 16:50:10 2019 : Debug: (9) EAP-Message = 0x040b0004
Thu Jan 31 16:50:10 2019 : Debug: (9) Message-Authenticator = 0x00000000000000000000000000000000
Thu Jan 31 16:50:10 2019 : Debug: Waking up in 2.6 seconds.
Thu Jan 31 16:50:13 2019 : Debug: (0) Cleaning up request packet ID 27 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: (1) Cleaning up request packet ID 28 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: (2) Cleaning up request packet ID 29 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: (3) Cleaning up request packet ID 30 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: (4) Cleaning up request packet ID 31 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: (5) Cleaning up request packet ID 32 with timestamp +9
Thu Jan 31 16:50:13 2019 : Debug: Waking up in 1.3 seconds.
^C
radius3:/etc/raddb/sites-enabled # exit
logout
More information about the Freeradius-Users
mailing list