> Radius Server has sent an Access-Challenge with EAP-MD5 challenge value > for which the client should respond back. > Based on the response received, Radius Server authenticates the user. The reason there is not response back is because the 3com access point interprets challenge as a failure. Hence the syslog entry for the access point Mar 14 13:49:55 accesspoint 802.1x FSM: Supplicant 00:40:96:48:89:b6 has failed Authentication Mar 14 14:06:05 accesspoint Associated station [ AID = 001, 00:40:96:48:89:b6 ] Mar 14 14:06:10 accesspoint 802.1x FSM: Supplicant 00:40:96:48:89:b6 has failed Authentication
Is there any special setting I must define for the user? The access point and client only has one setting which is EAP-MD5. I do not have any DEFAULT setting for EAP. There seems to be setting for SLIP and other protocols in the users file. Am I missing something in the configuration of the radius server? Eric ----- Original Message ----- From: "Raghu" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Thursday, March 14, 2002 12:05 PM Subject: Re: 3com Wirless Access Point and FreeRadius > > NOW I ASSUME THE MESSAGE BEING SENT BACK IT MY SECOND PACKET IN THE SNIFFER > > LOG. > > 64.95.221.220-> 192.168.100.170 UDP D=1812 S=1812 LEN=108 > > > > Sending Access-Challenge of id 62 to 64.214.69.230:4916 > > EAP-Message = > > "\001>\000\026\004\020#\237\300j\320\225\376<\2639\262\265\340\333F\243" > > Message-Authenticator = 0x00000000000000000000000000000000 > > State = > > 0xa6e15e0f06d3880b882260dbb8e69f2de88c903cf69a33702ce1ec0ba905020673dd8337 > > Finished request 0 > > > > It seems as though the 3com access point interprets this message as an > > authentification failure and ends the conversation. It also displays an > > message box "authentification failure" on the client side. What is the > > contents of the message being sent back to the 3com access point? Does > > anyone know a reason the 3com device will interpret the Challenge message as > > a failure? > > > > Radius Server has sent an Access-Challenge with EAP-MD5 challenge value > for which the client should respond back. > Based on the response received, Radius Server authenticates the user. > > Since there is no response received, > I think there is some misconfiguration either on your AP or client. > > You might also want to check, what EAP-Types ( like EAP-MD5 ...) > are supported by your 3com client & AP. > > -Raghu > > - > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
