Post a question on freeradius

2013-09-30 Thread Suryalakshmi Annadurai
Email id: suryalakshmi.annadu...@carc.co.inmailto:suryalakshmi.annadu...@carc.co.in Or ritu.gla...@gmail.commailto:ritu.gla...@gmail.com - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Access Request from HA rejected

2013-09-30 Thread Suryalakshmi Annadurai
Hi all, I am using FreeRadius 2.1.12 for WIMAX authentication. My initial authentication between ASN-GW and AAA is successful. Keys are generated and received in Access-Accept. But when HA sends Access-Request to AAA, the Request is rejected.The SPI values are all correct. All the AVP values

RE: Access Request from HA rejected

2013-09-30 Thread David Peterson
Send the whole configuration and initial request/response. The snippet below is pretty much useless. David From: freeradius-users-bounces+davidp=wirelessconnections@lists.freeradius.org [mailto:freeradius-users-bounces+davidp=wirelessconnections.net@lists.freera dius.org] On Behalf Of

Re: Access Request from HA rejected

2013-09-30 Thread Arran Cudbard-Bell
On 30 Sep 2013, at 13:59, David Peterson dav...@wirelessconnections.net wrote: Send the whole configuration and initial request/response. The snippet below is pretty much useless. also, set your date/time correctly. The reason why authentication is failing is because no module has take

No EAP session matching the State variable (and other various messages)

2013-09-30 Thread John Douglass
What exactly do error messages like: Sep 30 12:56:36 newdvlanb radiusd[10152]: rlm_eap: No EAP session matching the State variable. Sep 30 12:00:21 dvlanc radiusd[16053]: WARNING: Child is hung for request 782076 in component authenticate module peap. Sep 30 12:57:08 newdvlanb radiusd[10152]:

Re: No EAP session matching the State variable (and other various messages)

2013-09-30 Thread Arran Cudbard-Bell
On 30 Sep 2013, at 18:17, John Douglass john.dougl...@oit.gatech.edu wrote: What exactly do error messages like: Sep 30 12:56:36 newdvlanb radiusd[10152]: rlm_eap: No EAP session matching the State variable. The State attribute is returned in Access-Challenges by the RADIUS server and is

Re: No EAP session matching the State variable (and other various messages)

2013-09-30 Thread A . L . M . Buxey
Hi, Sep 30 12:56:36 newdvlanb radiusd[10152]: rlm_eap: No EAP session matching the State variable. Sep 30 12:00:21 dvlanc radiusd[16053]: WARNING: Child is hung for request 782076 in component authenticate module peap. Sep 30 12:57:08 newdvlanb radiusd[10152]: Discarding duplicate request

LDAP password in log files

2013-09-30 Thread Matthew Ceroni
Is there any way to prevent FreeRadius from showing the password in logs (debug logs) when authentication is done via LDAP? Current I see : rad_recv: Access-Request packet from host 192.168.100.2 port 31011, id=13, length=129 User-Name = username User-Password = XX NAS-IP-Address =

Re: LDAP password in log files

2013-09-30 Thread John Dennis
On 09/30/2013 02:45 PM, Matthew Ceroni wrote: Is there any way to prevent FreeRadius from showing the password in logs (debug logs) when authentication is done via LDAP? Current I see : rad_recv: Access-Request packet from host 192.168.100.2 port 31011, id=13, length=129 User-Name =

Re: LDAP password in log files

2013-09-30 Thread A . L . M . Buxey
Hi, Is there any way to prevent FreeRadius from showing the password in logs (debug logs) when authentication is done via LDAP? dont run in debug mode. debug mode is there for a reason - to debug problems. verify if things like passwords are correct. look at the mailing list archive - this

Re: No EAP session matching the State variable (and other various messages)

2013-09-30 Thread Alan DeKok
John Douglass wrote: Any one have any similar battle scars that I can learn from (server performance tweaks, optimizations, etc?). I've optimized as best I can the SQL component. This all seems related to the samba/winbind/ntlm_auth. FreeRADIUS is dependent on other systems. So if Samba or