|
Please help! Our radius server has been acting funny the
past 2 days. The radius server will quit sending accepts and responses back
to the user trying to log in. The daemon still has an entry in the ps listing, so it hasn't crashed, just stopped responding. We've done a tcpdump to help
locate the problem, but we can't trace it to anyone or anything in particular.
Is their any bugs related to this in our freeradius version?
Here's a tcpdump of one of the times that freeradius stopped responding. Note: the usernames have been replaced
with *'s. It stops responding when it receives requests (rad-access-req)
and sends no response (rad-access-accept) or (rad-account-resp).
Any help will be greatly appreciated! Thanks, Josh Linux OS: Red Hat 9 Freeradius version:
0.8.1 Tcpdump command
used: tcpdump udp port
radius or udp port radius-acct 11:08:54.358113 ras007.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
88 [id 183] Attr[ User{******.} Pass NAS_ipaddr{ras007.ezclick.net}
[|radius] 11:08:54.372323 ns.ezclick.net.radius
> ras007.ezclick.net.1025: rad-access-accept 20
[id 183] (DF) 11:09:01.924476 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
69 [id 164] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20219} [|radius] 11:09:01.930664 ns.ezclick.net.radius
> ras002.ezclick.net.1025: rad-access-accept 20
[id 164] (DF) 11:09:23.216337 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
74 [id 219] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20203} ] 11:09:23.228965 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 219] (DF) 11:09:54.346325 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 220] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20223} NAS_port_type{Async} ] 11:09:54.351492 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 220] (DF) 11:10:29.064402 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
70 [id 221] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20224} [|radius] 11:10:29.092479 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 221] (DF) 11:11:02.138893 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
72 [id 222] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20307} [|radius] 11:11:02.155133 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 222] (DF) 11:11:05.525087 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
69 [id 223] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20309} [|radius] 11:11:05.533933 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 223] (DF) 11:11:12.560961 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
70 [id 165] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20207} [|radius] 11:11:12.588448 ns.ezclick.net.radius
> ras002.ezclick.net.1025: rad-access-accept 20
[id 165] (DF) 11:13:27.165927 ras003.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
82 [id 72] Attr[ User{******.} Pass NAS_ipaddr{ras003.ezclick.net}
NAS_port{20102} [|radius] 11:13:27.189018 ns.ezclick.net.radius
> ras003.ezclick.net.1025: rad-access-accept 50
[id 72] Attr[ Framed_ipaddr{NAS_select} Framed_mtu{576} Service_type{Framed} Framed_proto{PPP}
Framed_compress{VJ TCP/IP} ] (DF) 11:13:30.405808 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
69 [id 224] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20105} [|radius] 11:13:30.418465 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-accept 20
[id 224] (DF) 11:14:53.814908 ras003.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
79 [id 73] Attr[ User{******.} Pass NAS_ipaddr{ras003.ezclick.net}
NAS_port{20103} NAS_port_type{Async}(zero-length attribute) 11:14:53.847094 ns.ezclick.net.radius
> ras003.ezclick.net.1025: rad-access-accept 50
[id 73] Attr[ Framed_ipaddr{NAS_select} Framed_mtu{576} Service_type{Framed} Framed_proto{PPP}
Framed_compress{VJ TCP/IP} ] (DF) 11:15:31.225037 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
78 [id 166] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
[|radius] 11:15:31.249522 ns.ezclick.net.radius
> ras002.ezclick.net.1025: rad-access-accept 20
[id 166] (DF) 11:15:36.817202 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
66 [id 225] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20107} NAS_port_type{Async} State ] 11:15:41.799293 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
66 [id 225] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
NAS_port{20107} NAS_port_type{Async} State ] 11:15:41.799607 ns.ezclick.net.radius
> ras001.ezclick.net.1025: rad-access-reject 20
[id 225] (DF) 11:17:48.856752 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 226] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:17:53.853866 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 226] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:17:58.874118 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 226] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:18:03.912112 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 226] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:18:44.549596 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 167] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20201} NAS_port_type{Async} ] 11:18:49.495132 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 167] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20201} NAS_port_type{Async} ] 11:18:54.514500 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 167] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20201} NAS_port_type{Async} ] 11:18:59.544542 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 167] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20201} NAS_port_type{Async} ] 11:19:15.431308 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 227] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:19:20.409109 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 227] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:19:25.441174 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 227] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:19:30.458231 ras001.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
75 [id 227] Attr[ User{******.} Pass NAS_ipaddr{ras001.ezclick.net}
[|radius] 11:19:51.091820 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 168] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20206} NAS_port_type{Async} ] 11:19:56.053138 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 168] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20206} NAS_port_type{Async} ] 11:20:01.073259 ras002.ezclick.net.1025 > ns.ezclick.net.radius: rad-access-req
68 [id 168] Attr[ User{******.} Pass NAS_ipaddr{ras002.ezclick.net}
NAS_port{20206} NAS_port_type{Async} ] |
