Hi
The ip address can be assigned but it seems to be
exhausted after running number of test
ip available:
rad_recv: Access-Request packet from host
192.168.31.10:1645, id=186, length=92
NAS-IP-Address = 192.168.31.10
NAS-Port = 13
NAS-Port-Type = Async
User-Name = "b"
Called-Station-Id = "190962"
Calling-Station-Id = "85290200959"
User-Password = "b"
Service-Type = Framed-User
Framed-Protocol = PPP
modcall: entering group authorize
modcall[authorize]: module "preprocess" returns ok
rlm_realm: No '@' in User-Name = "b", looking up
realm NULL
rlm_realm: No such realm NULL
modcall[authorize]: module "suffix" returns noop
users: Matched b at 152
modcall[authorize]: module "files" returns ok
modcall: group authorize returns ok
rad_check_password: Found Auth-Type Local
auth: type Local
auth: user supplied User-Password matches local
User-Password
modcall: entering group post-auth
modcall[post-auth]: module "RAS" returns noop
rlm_ippool: Searching for an entry for nas/port:
192.168.31.10/13
rlm_ippool: num: 1
rlm_ippool: Allocated ip 192.168.31.193 to client on
nas 192.168.31.10,port 13
modcall[post-auth]: module "RAS1" returns ok
modcall: group post-auth returns ok
Sending Access-Accept of id 186 to 192.168.31.10:1645
Service-Type = Framed-User
Framed-Protocol = PPP
Framed-Routing = Broadcast-Listen
Framed-MTU = 1500
Framed-Compression = Van-Jacobson-TCP-IP
Framed-IP-Address = 192.168.31.193
Finished request 3
Going to the next request
--- Walking the entire request list ---
Waking up in 6 seconds...
rad_recv: Accounting-Request packet from host
192.168.31.10:1646, id=187, length=102
NAS-IP-Address = 192.168.31.10
NAS-Port = 13
NAS-Port-Type = Async
User-Name = "b"
Called-Station-Id = "190962"
Calling-Station-Id = "85290200959"
Acct-Status-Type = Start
Acct-Authentic = RADIUS
Service-Type = Framed-User
Acct-Session-Id = "00000165"
Framed-Protocol = PPP
Acct-Delay-Time = 0
modcall: entering group preacct
modcall[preacct]: module "preprocess" returns noop
rlm_realm: No '@' in User-Name = "b", looking up
realm NULL
rlm_realm: No such realm NULL
modcall[preacct]: module "suffix" returns noop
modcall[preacct]: module "files" returns noop
modcall: group preacct returns noop
modcall: entering group accounting
radius_xlat:
'/usr/local/var/log/radius/radacct/192.168.31.10/detail'
rlm_detail:
/usr/local/var/log/radius/radacct/%{Client-IP-Address}/detail
expands to /usr/l
ocal/var/log/radius/radacct/192.168.31.10/detail
modcall[accounting]: module "detail" returns ok
modcall[accounting]: module "unix" returns ok
modcall[accounting]: module "RAS" returns noop
modcall[accounting]: module "RAS1" returns noop
radius_xlat: 'b'
modcall[accounting]: module "radutmp" returns ok
modcall: group accounting returns ok
Sending Accounting-Response of id 187 to
192.168.31.10:1646
Finished request 4
Going to the next request
Cleaning up request 4 ID 187 with timestamp 3d9020c5
rl_next: returning NULL
Waking up in 6 seconds...
--- Walking the entire request list ---
Cleaning up request 3 ID 186 with timestamp 3d9020c5
Nothing to do. Sleeping until we see a request.
rad_recv: Accounting-Request packet from host
192.168.31.10:1646, id=188, length=138
NAS-IP-Address = 192.168.31.10
NAS-Port = 13
NAS-Port-Type = Async
User-Name = "b"
Called-Station-Id = "190962"
Calling-Station-Id = "85290200959"
Acct-Status-Type = Stop
Acct-Authentic = RADIUS
Service-Type = Framed-User
Acct-Session-Id = "00000165"
Framed-Protocol = PPP
Acct-Terminate-Cause = Lost-Carrier
Acct-Input-Octets = 453
Acct-Output-Octets = 42
Acct-Input-Packets = 8
Acct-Output-Packets = 3
Acct-Session-Time = 28
Acct-Delay-Time = 0
modcall: entering group preacct
modcall[preacct]: module "preprocess" returns noop
rlm_realm: No '@' in User-Name = "b", looking up
realm NULL
rlm_realm: No such realm NULL
modcall[preacct]: module "suffix" returns noop
modcall[preacct]: module "files" returns noop
modcall: group preacct returns noop
modcall: entering group accounting
radius_xlat:
'/usr/local/var/log/radius/radacct/192.168.31.10/detail'
rlm_detail:
/usr/local/var/log/radius/radacct/%{Client-IP-Address}/detail
expands to /usr/l
ocal/var/log/radius/radacct/192.168.31.10/detail
modcall[accounting]: module "detail" returns ok
modcall[accounting]: module "unix" returns ok
modcall[accounting]: module "RAS" returns ok
modcall[accounting]: module "RAS1" returns ok
radius_xlat: 'b'
modcall[accounting]: module "radutmp" returns ok
modcall: group accounting returns ok
Sending Accounting-Response of id 188 to
192.168.31.10:1646
Finished request 5
Going to the next request
--- Walking the entire request list ---
Cleaning up request 5 ID 188 with timestamp 3d9020e1
Nothing to do. Sleeping until we see a request.
ip not available:
modcall: group authorize returns ok
rad_check_password: Found Auth-Type Local
auth: type Local
auth: user supplied User-Password matches local
User-Password
modcall: entering group post-auth
modcall[post-auth]: module "RAS" returns noop
rlm_ippool: Searching for an entry for nas/port:
192.168.31.10/21
rlm_ippool: No available ip addresses in pool.
modcall[post-auth]: module "RAS1" returns noop
modcall: group post-auth returns noop
However, connection can not be successful although
passing authentication and debug output from Cisco
AS5200
Sep 24 16:23:34.169 cst: %LINK-3-UPDOWN: Interface
Async13, changed state to up
Sep 24 16:23:34.217 cst: As13 PPP: Treating connection
as a dedicated line
Sep 24 16:23:34.221 cst: As13 PPP: Phase is
ESTABLISHING, Active Open
Sep 24 16:23:34.229 cst: As13 LCP: O CONFREQ [Closed]
id 38 len 24
Sep 24 16:23:34.233 cst: As13 LCP: ACCM 0x000A0000
(0x0206000A0000)
Sep 24 16:23:34.233 cst: As13 LCP: AuthProto PAP
(0x0304C023)
Sep 24 16:23:34.237 cst: As13 LCP: MagicNumber
0xF881AB19 (0x0506F881AB19)
Sep 24 16:23:34.241 cst: As13 LCP: PFC (0x0702)
Sep 24 16:23:34.245 cst: As13 LCP: ACFC (0x0802)
Sep 24 16:23:34.961 cst: As13 LCP: I CONFACK [REQsent]
id 38 len 24
Sep 24 16:23:34.965 cst: As13 LCP: ACCM 0x000A0000
(0x0206000A0000)
Sep 24 16:23:34.965 cst: As13 LCP: AuthProto PAP
(0x0304C023)
Sep 24 16:23:34.969 cst: As13 LCP: MagicNumber
0xF881AB19 (0x0506F881AB19)
Sep 24 16:23:34.973 cst: As13 LCP: PFC (0x0702)
Sep 24 16:23:34.977 cst: As13 LCP: ACFC (0x0802)
Sep 24 16:23:35.177 cst: As13 LCP: I CONFREQ [ACKrcvd]
id 2 len 14
Sep 24 16:23:35.181 cst: As13 LCP: PFC (0x0702)
Sep 24 16:23:35.181 cst: As13 LCP: ACFC (0x0802)
Sep 24 16:23:35.185 cst: As13 LCP: ACCM 0x00000000
(0x020600000000)
Sep 24 16:23:35.189 cst: As13 LCP: O CONFACK [ACKrcvd]
id 2 len 14
Sep 24 16:23:35.193 cst: As13 LCP: PFC (0x0702)
Sep 24 16:23:35.197 cst: As13 LCP: ACFC (0x0802)
Sep 24 16:23:35.197 cst: As13 LCP: ACCM 0x00000000
(0x020600000000)
Sep 24 16:23:35.201 cst: As13 LCP: State is Open
Sep 24 16:23:35.205 cst: As13 PPP: Phase is
AUTHENTICATING, by this end
Sep 24 16:23:35.785 cst: As13 PAP: I AUTH-REQ id 1 len
8 from "b"
Sep 24 16:23:35.793 cst: As13 PAP: Authenticating peer
b
Sep 24 16:23:35.853 cst: As13 PAP: O AUTH-ACK id 1 len
5
Sep 24 16:23:35.857 cst: As13 PPP: Phase is UP
Sep 24 16:23:35.861 cst: As13 IPCP: O CONFREQ [Closed]
id 8 len 10
Sep 24 16:23:35.865 cst: As13 IPCP: Address
192.168.31.10 (0x0306C0A81F0A)
Sep 24 16:23:35.909 cst: %LINEPROTO-5-UPDOWN: Line
protocol on Interface Async13, changed s
tate to up
Sep 24 16:23:36.437 cst: As13 IPCP: I CONFREQ
[REQsent] id 1 len 16
Sep 24 16:23:36.441 cst: As13 IPCP: Address 0.0.0.0
(0x030600000000)
Sep 24 16:23:36.445 cst: As13 IPCP: CompressType VJ
15 slots CompressSlotID (0x0206002D0
F01)
Sep 24 16:23:36.445 cst: As13 IPCP: No peer address
configured
Sep 24 16:23:36.449 cst: As13 IPCP: Neither side knows
remote address
Sep 24 16:23:36.453 cst: As13 IPCP: O CONFREJ
[REQsent] id 1 len 16
Sep 24 16:23:36.457 cst: As13 IPCP: Address 0.0.0.0
(0x030600000000)
Sep 24 16:23:36.461 cst: As13 IPCP: CompressType VJ
15 slots CompressSlotID (0x0206002D0
F01)
Sep 24 16:23:36.465 cst: As13 IPCP: I CONFACK
[REQsent] id 8 len 10
Sep 24 16:23:36.469 cst: As13 IPCP: Address
192.168.31.10 (0x0306C0A81F0A)
Sep 24 16:23:37.045 cst: As13 IPCP: I CONFREQ
[ACKrcvd] id 2 len 4
Sep 24 16:23:37.045 cst: As13 IPCP: O CONFACK
[ACKrcvd] id 2 len 4
Sep 24 16:23:37.049 cst: As13 IPCP: State is Open
Sep 24 16:24:00.878 cst: %ISDN-6-DISCONNECT: Interface
Serial0:19 disconnected from unknow
n , call lasted 29 seconds
Sep 24 16:24:00.998 cst: Se0:19 LCP: State is Closed
Sep 24 16:24:00.998 cst: Se0:19 PPP: Phase is DOWN
Sep 24 16:24:02.526 cst: %LINEPROTO-5-UPDOWN: Line
protocol on Interface Async13, changed s
tate to down
Thank you very much
K
--- Kostas Kalevras <[EMAIL PROTECTED]> wrote: > On
Tue, 24 Sep 2002, [iso-8859-1] ho k wrote:
>
> >
> > I used freeradius-snapshot-20020922.tar.gz for
> testing
> >
> > and I get the error if I do not uncomment the
> "RAS"
> > ip-pool name entry in "authorize" section of
> > radiusd.conf
> >
> > # Post-Auth. Run the ippool module. <----- CHECK
> THIS ONE
> > post-auth {
> > # main_pool
> > }
>
> The ippool module has been moved to the post-auth
> section
>
> --
> Kostas Kalevras Network Operations Center
> [EMAIL PROTECTED] National Technical University of
> Athens, Greece
> Work Phone: +30 10 7721861
> 'Go back to the shadow' Gandalf
>
>
> -
> List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
_______________________________________________________________________
Do You Yahoo!?
Get your free @yahoo.com.hk address at http://mail.english.yahoo.com.hk
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html