Срочно нужно настроить связку freeradius+cisco 1130AG. После манипуляции с конфигами и генерацией ssl ключя для TLS модуля, вижу такое: rad_recv: Access-Request packet from host 192.168.24.5:1645, id=51, length=126 User-Name = "user" Framed-MTU = 1400 Called-Station-Id = "001d.a174.d080" Calling-Station-Id = "0015.af38.2141" Service-Type = Login-User Message-Authenticator = 0x1dfb2307baff026a198dc6d8da020702 EAP-Message = 0x020200090175736572 NAS-Port-Type = Wireless-802.11 NAS-Port = 395 NAS-Port-Id = "395" NAS-IP-Address = 192.168.24.5 NAS-Identifier = "ap" Processing the authorize section of radiusd.conf modcall: entering group authorize for request 0 modcall[authorize]: module "preprocess" returns ok for request 0 rlm_eap: EAP packet type response id 2 length 9 rlm_eap: No EAP Start, assuming it's an on-going EAP conversation modcall[authorize]: module "eap" returns updated for request 0 radius_xlat: 'user' rlm_sql (sql): sql_set_user escaped user --> 'user' radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radcheck WHERE Username = 'user' ORDER BY id' rlm_sql (sql): Reserving sql socket id: 4 radius_xlat: 'SELECT radgroupcheck.id,radgroupcheck.GroupName,radgroupcheck.Attribute,radgroupcheck. Value,radgroupcheck.op FROM radgroupcheck,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupcheck.GroupName ORDER BY radgroupcheck.id' radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radreply WHERE Username = 'user' ORDER BY id' radius_xlat: 'SELECT radgroupreply.id,radgroupreply.GroupName,radgroupreply.Attribute,radgroupreply. Value,radgroupreply.op FROM radgroupreply,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupreply.GroupName ORDER BY radgroupreply.id' rlm_sql (sql): Released sql socket id: 4 modcall[authorize]: module "sql" returns ok for request 0 modcall: leaving group authorize (returns updated) for request 0 rad_check_password: Found Auth-Type EAP auth: type "EAP" Processing the authenticate section of radiusd.conf modcall: entering group authenticate for request 0 rlm_eap: EAP Identity rlm_eap: processing type md5 rlm_eap_md5: Issuing Challenge modcall[authenticate]: module "eap" returns handled for request 0 modcall: leaving group authenticate (returns handled) for request 0 Sending Access-Challenge of id 51 to 192.168.24.5 port 1645 Password = "pass" EAP-Message = 0x010300160410bc38c0196b8f44defcf71bd90f35c440 Message-Authenticator = 0x00000000000000000000000000000000 State = 0xe681beb612f26d08849714a384e7adc1 Finished request 0 Going to the next request --- Walking the entire request list --- Waking up in 6 seconds... rad_recv: Access-Request packet from host 192.168.24.5:1645, id=52, length=141 User-Name = "user" Framed-MTU = 1400 Called-Station-Id = "001d.a174.d080" Calling-Station-Id = "0015.af38.2141" Service-Type = Login-User Message-Authenticator = 0x3482a0904da9640810010bc7b01562e6 EAP-Message = 0x020300060319 NAS-Port-Type = Wireless-802.11 NAS-Port = 395 NAS-Port-Id = "395" State = 0xe681beb612f26d08849714a384e7adc1 NAS-IP-Address = 192.168.24.5 NAS-Identifier = "ap" Processing the authorize section of radiusd.conf modcall: entering group authorize for request 1 modcall[authorize]: module "preprocess" returns ok for request 1 rlm_eap: EAP packet type response id 3 length 6 rlm_eap: No EAP Start, assuming it's an on-going EAP conversation modcall[authorize]: module "eap" returns updated for request 1 radius_xlat: 'user' rlm_sql (sql): sql_set_user escaped user --> 'user' radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radcheck WHERE Username = 'user' ORDER BY id' rlm_sql (sql): Reserving sql socket id: 3 radius_xlat: 'SELECT radgroupcheck.id,radgroupcheck.GroupName,radgroupcheck.Attribute,radgroupcheck. Value,radgroupcheck.op FROM radgroupcheck,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupcheck.GroupName ORDER BY radgroupcheck.id' radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radreply WHERE Username = 'user' ORDER BY id' radius_xlat: 'SELECT radgroupreply.id,radgroupreply.GroupName,radgroupreply.Attribute,radgroupreply. Value,radgroupreply.op FROM radgroupreply,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupreply.GroupName ORDER BY radgroupreply.id' rlm_sql (sql): Released sql socket id: 3 modcall[authorize]: module "sql" returns ok for request 1 modcall: leaving group authorize (returns updated) for request 1 rad_check_password: Found Auth-Type EAP auth: type "EAP" Processing the authenticate section of radiusd.conf modcall: entering group authenticate for request 1 rlm_eap: Request found, released from the list rlm_eap: EAP NAK rlm_eap: EAP-NAK asked for EAP-Type/peap rlm_eap: processing type tls rlm_eap_tls: Initiate rlm_eap_tls: Start returned 1 modcall[authenticate]: module "eap" returns handled for request 1 modcall: leaving group authenticate (returns handled) for request 1 Sending Access-Challenge of id 52 to 192.168.24.5 port 1645 Password = "pass" EAP-Message = 0x010400061920 Message-Authenticator = 0x00000000000000000000000000000000 State = 0xbe96aa6179623e846c8f3996d13ac6a8 Finished request 1 Going to the next request
Ответ на:
комментарий
от cyclon
Ответ на:
комментарий
от cyclon
Ответ на:
комментарий
от cyclon
Ответ на:
комментарий
от cyclon
Ответ на:
комментарий
от cyclon
Вы не можете добавлять комментарии в эту тему. Тема перемещена в архив.
Похожие темы
- Форум Помогите настроить FreeRADIUS (2002)
- Форум [freeradius], распледеление user-ов по группам (2010)
- Форум wpa2 enterprise, eap и freeradius + mysql (2017)
- Форум Freeradius + ntlm (2011)
- Форум freeradius (2003)
- Форум freeRadius + WM2003 (2007)
- Форум Freeradius + Mikrotik (2016)
- Форум freeradius + mysql, eap, не работают пользователи из mysql (2017)
- Форум freeradius+chap+ms-chap(v. 1,2) авторизация не работает (2007)
- Форум [freeradius + daloradius]Не могу разобраться с sql (2011)