Срочно нужно настроить связку freeradius+cisco 1130AG.
После манипуляции с конфигами и генерацией ssl ключя для TLS модуля,
вижу такое:
rad_recv: Access-Request packet from host 192.168.24.5:1645, id=51, length=126
User-Name = "user"
Framed-MTU = 1400
Called-Station-Id = "001d.a174.d080"
Calling-Station-Id = "0015.af38.2141"
Service-Type = Login-User
Message-Authenticator = 0x1dfb2307baff026a198dc6d8da020702
EAP-Message = 0x020200090175736572
NAS-Port-Type = Wireless-802.11
NAS-Port = 395
NAS-Port-Id = "395"
NAS-IP-Address = 192.168.24.5
NAS-Identifier = "ap"
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 0
modcall[authorize]: module "preprocess" returns ok for request 0
rlm_eap: EAP packet type response id 2 length 9
rlm_eap: No EAP Start, assuming it's an on-going EAP conversation
modcall[authorize]: module "eap" returns updated for request 0
radius_xlat: 'user'
rlm_sql (sql): sql_set_user escaped user --> 'user'
radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radcheck WHERE Username = 'user' ORDER BY id'
rlm_sql (sql): Reserving sql socket id: 4
radius_xlat: 'SELECT radgroupcheck.id,radgroupcheck.GroupName,radgroupcheck.Attribute,radgroupcheck.
Value,radgroupcheck.op FROM radgroupcheck,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupcheck.GroupName ORDER BY radgroupcheck.id'
radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radreply WHERE Username = 'user' ORDER BY id'
radius_xlat: 'SELECT radgroupreply.id,radgroupreply.GroupName,radgroupreply.Attribute,radgroupreply.
Value,radgroupreply.op FROM radgroupreply,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupreply.GroupName ORDER BY radgroupreply.id'
rlm_sql (sql): Released sql socket id: 4
modcall[authorize]: module "sql" returns ok for request 0
modcall: leaving group authorize (returns updated) for request 0
rad_check_password: Found Auth-Type EAP
auth: type "EAP"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 0
rlm_eap: EAP Identity
rlm_eap: processing type md5
rlm_eap_md5: Issuing Challenge
modcall[authenticate]: module "eap" returns handled for request 0
modcall: leaving group authenticate (returns handled) for request 0
Sending Access-Challenge of id 51 to 192.168.24.5 port 1645
Password = "pass"
EAP-Message = 0x010300160410bc38c0196b8f44defcf71bd90f35c440
Message-Authenticator = 0x00000000000000000000000000000000
State = 0xe681beb612f26d08849714a384e7adc1
Finished request 0
Going to the next request
--- Walking the entire request list ---
Waking up in 6 seconds...
rad_recv: Access-Request packet from host 192.168.24.5:1645, id=52, length=141
User-Name = "user"
Framed-MTU = 1400
Called-Station-Id = "001d.a174.d080"
Calling-Station-Id = "0015.af38.2141"
Service-Type = Login-User
Message-Authenticator = 0x3482a0904da9640810010bc7b01562e6
EAP-Message = 0x020300060319
NAS-Port-Type = Wireless-802.11
NAS-Port = 395
NAS-Port-Id = "395"
State = 0xe681beb612f26d08849714a384e7adc1
NAS-IP-Address = 192.168.24.5
NAS-Identifier = "ap"
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 1
modcall[authorize]: module "preprocess" returns ok for request 1
rlm_eap: EAP packet type response id 3 length 6
rlm_eap: No EAP Start, assuming it's an on-going EAP conversation
modcall[authorize]: module "eap" returns updated for request 1
radius_xlat: 'user'
rlm_sql (sql): sql_set_user escaped user --> 'user'
radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radcheck WHERE Username = 'user' ORDER BY id'
rlm_sql (sql): Reserving sql socket id: 3
radius_xlat: 'SELECT radgroupcheck.id,radgroupcheck.GroupName,radgroupcheck.Attribute,radgroupcheck.
Value,radgroupcheck.op FROM radgroupcheck,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupcheck.GroupName ORDER BY radgroupcheck.id'
radius_xlat: 'SELECT id, UserName, Attribute, Value, op FROM radreply WHERE Username = 'user' ORDER BY id'
radius_xlat: 'SELECT radgroupreply.id,radgroupreply.GroupName,radgroupreply.Attribute,radgroupreply.
Value,radgroupreply.op FROM radgroupreply,usergroup WHERE usergroup.Username = 'user' AND usergroup.GroupName = radgroupreply.GroupName ORDER BY radgroupreply.id'
rlm_sql (sql): Released sql socket id: 3
modcall[authorize]: module "sql" returns ok for request 1
modcall: leaving group authorize (returns updated) for request 1
rad_check_password: Found Auth-Type EAP
auth: type "EAP"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 1
rlm_eap: Request found, released from the list
rlm_eap: EAP NAK
rlm_eap: EAP-NAK asked for EAP-Type/peap
rlm_eap: processing type tls
rlm_eap_tls: Initiate
rlm_eap_tls: Start returned 1
modcall[authenticate]: module "eap" returns handled for request 1
modcall: leaving group authenticate (returns handled) for request 1
Sending Access-Challenge of id 52 to 192.168.24.5 port 1645
Password = "pass"
EAP-Message = 0x010400061920
Message-Authenticator = 0x00000000000000000000000000000000
State = 0xbe96aa6179623e846c8f3996d13ac6a8
Finished request 1
Going to the next request

Ответ на:
комментарий
от cyclon

Ответ на:
комментарий
от cyclon

Ответ на:
комментарий
от cyclon

Ответ на:
комментарий
от cyclon

Ответ на:
комментарий
от cyclon

Вы не можете добавлять комментарии в эту тему. Тема перемещена в архив.
Похожие темы
- Форум Помогите настроить FreeRADIUS (2002)
- Форум [freeradius], распледеление user-ов по группам (2010)
- Форум Freeradius + ntlm (2011)
- Форум wpa2 enterprise, eap и freeradius + mysql (2017)
- Форум freeRadius + WM2003 (2007)
- Форум freeradius (2003)
- Форум freeradius+chap+ms-chap(v. 1,2) авторизация не работает (2007)
- Форум Freeradius + Mikrotik (2016)
- Форум freeradius + mysql, eap, не работают пользователи из mysql (2017)
- Форум [freeradius + daloradius]Не могу разобраться с sql (2011)