OK, I enabled EAP in the authenticate and authorize section. Radius is
sending an EAP-MD5 Challenge but never receiving a response. Is this an
issue with the AP?

thanks

rick...
Rom.5:8
>>> [EMAIL PROTECTED] 01/25/04 9:32 AM >>>
Apparently I don't understand EAP and APs. Its not that the message is
unclear, the unclear part is why the User-Password is missing. I will
enable the eap module and see what happens.

thanks

rick...
Rom.5:8
>>> [EMAIL PROTECTED] 01/25/04 8:32 AM >>>
"Rick Whitley" <[EMAIL PROTECTED]> wrote:
> Here is another example of the debug output. If this is not enough
> information please let me know what I can send. Also we are using
Cisco
> 350 APs.

  Ok...

> rad_recv: Access-Request packet from host 10.5.10.2:1645, id=185,
> length=119
>         User-Name = "leec1779"
...
>         EAP-Message = 0x0202000d016c65656331373739
...
>   rad_check_password:  Found Auth-Type LDAP
> auth: type "LDAP"
> modcall: entering group Auth-Type for request 9
> rlm_ldap: - authenticate
> rlm_ldap: Attribute "User-Password" is required for authentication.

  What part of that message is unclear?  There is no User-Password in
the request, so the LDAP module can't authenticate it.  Since you're
using Cisco AP's, and they're sending EAP data, you *may* want to
think about enabling the EAP module.

  Do you understand how EAP works, and what AP's do?

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html


- 
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to