debug tls connection

Jim Shi hjshi at yahoo.com
Tue Jan 20 21:26:40 UTC 2026


I am trying to figure out tls connection is failing. Here is freeradius server log:can someone please provide come clue?

6) session-state: No cached attributes

(6) # Executing section authorize from file /ngs/app/idmspp/freeradius/etc/raddb/sites-enabled/default

(6)   authorize {

(6)     [preprocess] = ok

(6)     [chap] = noop

(6)     [mschap] = noop

(6)     [digest] = noop

(6) eap: Peer sent EAP Response (code 2) ID 7 length 1276

(6) eap: No EAP Start, assuming it's an on-going EAP conversation

(6)     [eap] = updated

(6)     [expiration] = noop

(6)     [logintime] = noop

(6)     [pap] = noop

(6)   } # authorize = updated

(6) Found Auth-Type = eap

(6) # Executing group from file /ngs/app/idmspp/freeradius/etc/raddb/sites-enabled/default

(6)   authenticate {

(6) eap: Expiring EAP session with state 0x39f46d743cf36072

(6) eap: Finished EAP session with state 0x39f46d743cf36072

(6) eap: Previous EAP request found for state 0x39f46d743cf36072, released from the list

(6) eap: Peer sent packet with method EAP TLS (13)

(6) eap: Calling submodule eap_tls to process data

(6) eap_tls: Continuing EAP-TLS

(6) eap_tls: Peer indicated complete TLS record size will be 3550 bytes

(6) eap_tls: Expecting 3 TLS record fragments

(6) eap_tls: Got first TLS record fragment (1266 bytes).  Peer indicated more fragments to follow

(6) eap_tls: [eaptls verify] = first fragment

(6) eap_tls: ACKing Peer's TLS record fragment

(6) eap_tls: [eaptls process] = handled

(6) eap: Sending EAP Request (code 1) ID 8 length 6

(6) eap: EAP session adding &reply:State = 0x39f46d743ffc6072

(6)     [eap] = handled

(6)   } # authenticate = handled
(6) Using Post-Auth-Type Challenge


More information about the Freeradius-Users mailing list