|
Greetings all,,, I am experiencing a rather strange
problem proxying authentications to another Radius Server...
Both Systems are running Radiator 3.1 and I can
send a test auth direct to the proxy and get an access accept, however when I
send through my main radius server I get an accept packet, but I get the error
"WARNING: Unknown reply received in AuthRADIUS for request 1 from
66.97.95.1:1645" and it fails the auth...
I have attached both machines config files
<minus the extra handlers in the main.cfg> as well as trace logs from each
machine as well...
The proxy admin and myself are both new to Radiator
and tried all that we could, here is a list of our attempts:
1> changed secrets
2> commented out AddToReply statement on
proxy
3> used different username/password
Any assustance would be greatly
appreciated...
Just as an FYI, I do have my main server Proxying
with another machine running radiator and all is fine, though I removed that
Handler from the config, it is identical to the one used in this instance with
the exception of the realm,ip,secret,etc...
Thank in advance,
Miko |
Mon Jul 29 10:30:56 2002: INFO: Server started: Radiator 3.1 on w1 (DEMO) Mon Jul 29 10:31:07 2002: DEBUG: Packet dump: *** Received from 65.100.104.31 port 1351 ....
Packet length = 54
01 01 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 1
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:31:07 2002: DEBUG: Handling request with Handler 'Realm=DEFAULT'
Mon Jul 29 10:31:07 2002: DEBUG: Rewrote user name to uunet
Mon Jul 29 10:31:07 2002: DEBUG: Deleting session for [EMAIL PROTECTED], 65.100.104.31,
Mon Jul 29 10:31:07 2002: DEBUG: Handling with Radius::AuthSQL
Mon Jul 29 10:31:07 2002: DEBUG: Handling with Radius::AuthSQL:
Mon Jul 29 10:31:08 2002: DEBUG: Query is: select Password from Prism.ispService where
((Status = 'A' or Status = 'O') and Login = 'uunet' )
Mon Jul 29 10:31:08 2002: DEBUG: Radius::AuthSQL looks for match with uunet
Mon Jul 29 10:31:08 2002: DEBUG: Radius::AuthSQL ACCEPT:
Mon Jul 29 10:31:08 2002: DEBUG: Access accepted for uunet
Mon Jul 29 10:31:08 2002: DEBUG: Packet dump:
*** Sending to 65.100.104.31 port 1351 ....
Packet length = 20
02 01 00 14 75 e5 5a 11 e8 77 53 f8 34 ef 5c 00
84 fe db b7
Code: Access-Accept
Identifier: 1
Authentic: 1027963369
Attributes:
Mon Jul 29 10:31:11 2002: DEBUG: Packet dump:
*** Received from 65.100.104.31 port 1351 ....
Packet length = 54
01 02 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 2
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:31:11 2002: DEBUG: Handling request with Handler 'Realm=DEFAULT'
Mon Jul 29 10:31:11 2002: DEBUG: Rewrote user name to uunet
Mon Jul 29 10:31:11 2002: DEBUG: Deleting session for [EMAIL PROTECTED], 65.100.104.31,
Mon Jul 29 10:31:11 2002: DEBUG: Handling with Radius::AuthSQL
Mon Jul 29 10:31:11 2002: DEBUG: Handling with Radius::AuthSQL:
Mon Jul 29 10:31:11 2002: DEBUG: Query is: select Password from Prism.ispService where
((Status = 'A' or Status = 'O') and Login = 'uunet' )
Mon Jul 29 10:31:11 2002: DEBUG: Radius::AuthSQL looks for match with uunet
Mon Jul 29 10:31:11 2002: DEBUG: Radius::AuthSQL ACCEPT:
Mon Jul 29 10:31:11 2002: DEBUG: Access accepted for uunet
Mon Jul 29 10:31:11 2002: DEBUG: Packet dump:
*** Sending to 65.100.104.31 port 1351 ....
Packet length = 20
02 02 00 14 2d 59 3c f1 e8 aa 4d d2 55 dd 4b 00
cc 23 a7 1b
Code: Access-Accept
Identifier: 2
Authentic: 1027963369
Attributes:
Mon Jul 29 10:31:12 2002: DEBUG: Packet dump:
*** Received from 65.100.104.31 port 1351 ....
Packet length = 54
01 01 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 1
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:31:12 2002: DEBUG: Handling request with Handler 'Realm=DEFAULT'
Mon Jul 29 10:31:12 2002: DEBUG: Rewrote user name to uunet
Mon Jul 29 10:31:12 2002: DEBUG: Deleting session for [EMAIL PROTECTED], 65.100.104.31,
Mon Jul 29 10:31:12 2002: DEBUG: Handling with Radius::AuthSQL
Mon Jul 29 10:31:12 2002: DEBUG: Handling with Radius::AuthSQL:
Mon Jul 29 10:31:12 2002: DEBUG: Query is: select Password from Prism.ispService where
((Status = 'A' or Status = 'O') and Login = 'uunet' )
Mon Jul 29 10:31:12 2002: DEBUG: Radius::AuthSQL looks for match with uunet
Mon Jul 29 10:31:12 2002: DEBUG: Radius::AuthSQL ACCEPT:
Mon Jul 29 10:31:12 2002: DEBUG: Access accepted for uunet
Mon Jul 29 10:31:12 2002: DEBUG: Packet dump:
*** Sending to 65.100.104.31 port 1351 ....
Packet length = 20
02 01 00 14 75 e5 5a 11 e8 77 53 f8 34 ef 5c 00
84 fe db b7
Code: Access-Accept
Identifier: 1
Authentic: 1027963369
Attributes:
Mon Jul 29 10:22:25 2002: INFO: Server started: Radiator 3.1 on devel1 (DEMO)
Mon Jul 29 10:22:49 2002: DEBUG: Packet dump:
*** Received from 127.0.0.1 port 1348 ....
Packet length = 54
01 04 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 4
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:22:49 2002: DEBUG: Handling request with Handler 'Realm="/bmi.net/i"'
Mon Jul 29 10:22:50 2002: DEBUG: SDB2 Deleting session for [EMAIL PROTECTED], 127.0.0.1,
Mon Jul 29 10:22:50 2002: DEBUG: do query is: sp_RadOnline_UUNET @un='[EMAIL PROTECTED]',
@ts='// ::', @cts='07/29/2002 10:22:50', @ast='', @st='', @sid='', @nid='', @npt='',
@ptt='', @fip='', @svt='', @ctr='', @io='', @oo='', @cdid='', @cgid='', @tc=''
Mon Jul 29 10:22:50 2002: DEBUG: Query is: select NASID, NASPORT, SESSIONID from
RADONLINE_UUNET where USERNAME='[EMAIL PROTECTED]'
Mon Jul 29 10:22:50 2002: DEBUG: Handling with Radius::AuthSQL
Mon Jul 29 10:22:50 2002: DEBUG: Handling with Radius::AuthSQL: HoursCheck
Mon Jul 29 10:22:50 2002: DEBUG: Query is: select Null AS Password from TIMEBANK_UUNET
Where UserName='[EMAIL PROTECTED]' AND timeused<=timebank
Mon Jul 29 10:22:51 2002: DEBUG: Radius::AuthSQL looks for match with [EMAIL PROTECTED]
Mon Jul 29 10:22:51 2002: DEBUG: Query is: select NASID, NASPORT, SESSIONID from
RADONLINE_UUNET where USERNAME='[EMAIL PROTECTED]'
Mon Jul 29 10:22:51 2002: DEBUG: Radius::AuthSQL ACCEPT:
Mon Jul 29 10:22:51 2002: DEBUG: Handling with Radius::AuthRADIUS
Mon Jul 29 10:22:51 2002: DEBUG: Packet dump:
*** Sending to 66.97.95.41 port 1645 ....
Packet length = 54
01 01 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 1
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:22:51 2002: DEBUG: Packet dump:
*** Received from 66.97.95.1 port 1645 ....
Packet length = 20
02 01 00 14 75 e5 5a 11 e8 77 53 f8 34 ef 5c 00
84 fe db b7
Code: Access-Accept
Identifier: 1
Authentic: u<229>Z<17><232>wS<248>4<239>\<0><132><254><219><183>
Attributes:
Mon Jul 29 10:22:51 2002: WARNING: Unknown reply received in AuthRADIUS for request 1
from 66.97.95.1:1645
Mon Jul 29 10:22:53 2002: DEBUG: Packet dump:
*** Received from 127.0.0.1 port 1348 ....
Packet length = 54
01 04 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 4
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:22:53 2002: DEBUG: Handling request with Handler 'Realm="/bmi.net/i"'
Mon Jul 29 10:22:53 2002: DEBUG: SDB2 Deleting session for [EMAIL PROTECTED], 127.0.0.1,
Mon Jul 29 10:22:53 2002: DEBUG: do query is: sp_RadOnline_UUNET @un='[EMAIL PROTECTED]',
@ts='// ::', @cts='07/29/2002 10:22:53', @ast='', @st='', @sid='', @nid='', @npt='',
@ptt='', @fip='', @svt='', @ctr='', @io='', @oo='', @cdid='', @cgid='', @tc=''
Mon Jul 29 10:22:53 2002: DEBUG: Query is: select NASID, NASPORT, SESSIONID from
RADONLINE_UUNET where USERNAME='[EMAIL PROTECTED]'
Mon Jul 29 10:22:54 2002: DEBUG: Handling with Radius::AuthSQL
Mon Jul 29 10:22:54 2002: DEBUG: Handling with Radius::AuthSQL: HoursCheck
Mon Jul 29 10:22:54 2002: DEBUG: Query is: select Null AS Password from TIMEBANK_UUNET
Where UserName='[EMAIL PROTECTED]' AND timeused<=timebank
Mon Jul 29 10:22:54 2002: DEBUG: Radius::AuthSQL looks for match with [EMAIL PROTECTED]
Mon Jul 29 10:22:54 2002: DEBUG: Query is: select NASID, NASPORT, SESSIONID from
RADONLINE_UUNET where USERNAME='[EMAIL PROTECTED]'
Mon Jul 29 10:22:54 2002: DEBUG: Radius::AuthSQL ACCEPT:
Mon Jul 29 10:22:54 2002: DEBUG: Handling with Radius::AuthRADIUS
Mon Jul 29 10:22:54 2002: DEBUG: Packet dump:
*** Sending to 66.97.95.41 port 1645 ....
Packet length = 54
01 02 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 2
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:22:55 2002: DEBUG: Packet dump:
*** Received from 66.97.95.1 port 1645 ....
Packet length = 20
02 02 00 14 2d 59 3c f1 e8 aa 4d d2 55 dd 4b 00
cc 23 a7 1b
Code: Access-Accept
Identifier: 2
Authentic: -Y<<241><232><170>M<210>U<221>K<0><204>#<167><27>
Attributes:
Mon Jul 29 10:22:55 2002: WARNING: Unknown reply received in AuthRADIUS for request 2
from 66.97.95.1:1645
Mon Jul 29 10:22:56 2002: DEBUG: Timed out, retransmitting
Mon Jul 29 10:22:56 2002: DEBUG: Packet dump:
*** Sending to 66.97.95.41 port 1645 ....
Packet length = 54
01 01 00 36 20 20 20 20 20 20 31 30 32 37 39 36
33 33 36 39 01 0f 75 75 6e 65 74 40 62 6d 69 2e
6e 65 74 03 13 dc 52 16 d7 80 67 21 f9 70 8b 7f
67 41 e9 57 74 83
Code: Access-Request
Identifier: 1
Authentic: 1027963369
Attributes:
User-Name = "[EMAIL PROTECTED]"
CHAP-Password = <220>R<22><215><128>g!<249>p<139><127>gA<233>Wt<131>
Mon Jul 29 10:22:56 2002: DEBUG: Packet dump:
*** Received from 66.97.95.1 port 1645 ....
Packet length = 20
02 01 00 14 75 e5 5a 11 e8 77 53 f8 34 ef 5c 00
84 fe db b7
Code: Access-Accept
Identifier: 1
Authentic: u<229>Z<17><232>wS<248>4<239>\<0><132><254><219><183>
Attributes:
Mon Jul 29 10:22:56 2002: WARNING: Unknown reply received in AuthRADIUS for request 1
from 66.97.95.1:1645
proxy.cfg
Description: Binary data
main.cfg
Description: Binary data
