Okay, I "patched" misc.c to get around the gethostbyaddr_r problems in Linux (thanks 
for the information, everyone!) and now I'm trying to get EAP to work.

Preface:  The server compiles and runs.  Libraries:

glibc-2.2.4
openssl-0.9.6a
UCD SNMP 4.1.2 (will upgrade soon)
Linux-PAM 0.75

We're using Nortel switches and two different Auth-Types (PAM and EAP).

The BayStack 450's and Passport 8600's can authenticate me (Auth-Type PAM) and I get 
in with the correct access depending upon the attributes I set, so I'm pretty sure 
I've got clients.conf, users, and radiusd.conf set up correctly (mostly).

Now we're trying to get a Business Policy Switch 2000 (BayStack *460*) to do EAP 
authentication using the FreeRADIUS server.  It should be using EAP-MD5.  We're 
getting the requests, but radiusd throws the following into the log:

[Date] Error: Received packet from 128.206.95.215 with invalid Message-Authenticator!
[Date] Info: Sending duplicate authentication reply to client 128.206.95.215:1026 - 
ID: 63

...repeated three times, presumably once per request from the switch.

So what obvious thing am I missing here, and what sections of the config files would 
be useful if I posted them to this list?

Thanks in advance for any advice!

--J

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to