Re: PEAP failure problem
Hello again! Forgiveness for having reached this situation, the result of several unfortunate events. Thank you for reply and your time - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure problem
UEX Ana Gallardo Gómez wrote: This was asked many, many, times. And answered. Go read the responses to your messages. If you're not going to read the list, then don't post questions here. And stop posting this question. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure problem
On 06/09/12 10:52, Alan DeKok wrote: UEX Ana Gallardo Gómez wrote: This was asked many, many, times. And answered. Go read the responses to your messages. If you're not going to read the list, then don't post questions here. I almost wonder if he is not getting list mail somehow! - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure problem
This was asked many, many, times. And answered. Ok, sorry to ask about that one more time. I though that if I can work with Codigo-Reject attribute in Post-Auth type Reject for EAP-TTLS-PAP and EAP-TTLS-MsCHAPv2, I would do the same in PEAP. I read http://www.mail-archive.com/freeradius-users@lists.freeradius.org/msg56919.html Sending Reply-Message in an Access-Reject is not permitted for EAP sessions. All, EAP-TTLS-PAP, EAP-TTLS-MsCHAPv2 and PEAP are EAP methods... Go read the responses to your messages. Sory, but What responses? What messages? Do you think that if I had received any answer would have asked many times the same? If you're not going to read the list, then don't post questions here. And stop posting this question. I send this cuestion and I didn't see in the list and I didn't get a response. I assumed it would have been a problem and went to send... Sorry again and thank you for you response despite the tone you used. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure problem
Ana Gallardo Gómez wrote: I though that if I can work with Codigo-Reject attribute in Post-Auth type Reject for EAP-TTLS-PAP and EAP-TTLS-MsCHAPv2, I would do the same in PEAP. No. All, EAP-TTLS-PAP, EAP-TTLS-MsCHAPv2 and PEAP are EAP methods... Really? I didn't know that. Go read the responses to your messages. Sory, but What responses? What messages? Do you read the list? Do you think that if I had received any answer would have asked many times the same? I think you're not reading the messages sent to the list. I responded on September 3. See your inbox. Or, go rad the list archives. Sorry again and thank you for you response despite the tone you used. You're offended that we've told you to read the messages on this list? Why, exactly is it our problem that we've tried to help you, and you're not listening? It's rude to ask for help, and then ignore the help you get. It's doubly rude to get upset when told you're ignoring the help we're giving you. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure
=?ISO-8859-1?Q?Manuel_S=E1nchez_Cuenca?= [EMAIL PROTECTED] wrote: rlm_mschap: No User-Password configured. Cannot create NT-Password. rlm_mschap: doing MS-CHAPv2 for lolo with NT-Password rlm_mschap: FAILED: No NT/LM-Password. Cannot perform authentication. PEAP (and mschap) needs access to a good clear-text password, or an nt-password to compare against the request. If the server doesn't have a password for the user, then it can't check the password the user supplied. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure
Alan DeKok escribió: =?ISO-8859-1?Q?Manuel_S=E1nchez_Cuenca?= [EMAIL PROTECTED] wrote: rlm_mschap: No User-Password configured. Cannot create NT-Password. rlm_mschap: doing MS-CHAPv2 for lolo with NT-Password rlm_mschap: FAILED: No NT/LM-Password. Cannot perform authentication. PEAP (and mschap) needs access to a good clear-text password, or an nt-password to compare against the request. I have this in my users configuratin file: lolo User-Password == entrar Reply-Message = Hola, lolo ¿Is this correct? If the server doesn't have a password for the user, then it can't check the password the user supplied. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html -- == Manuel Sanchez Cuenca Dept. Ingenieria de la Informacion y las Comunicaciones Universidad de Murcia - Espana Tlf: +34 968364311 - Fax: 968364151 email: [EMAIL PROTECTED] www: http://skywalker.dif.um.es/~lolo - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: PEAP failure
hi do you have files in your authorization section of radiusd.conf? the lines for itself look correct to me but the debug log says clearly that something is wrong since mschap can't find the password. ciao artur Manuel Sánchez Cuenca wrote: Alan DeKok escribió: =?ISO-8859-1?Q?Manuel_S=E1nchez_Cuenca?= [EMAIL PROTECTED] wrote: rlm_mschap: No User-Password configured. Cannot create NT-Password. rlm_mschap: doing MS-CHAPv2 for lolo with NT-Password rlm_mschap: FAILED: No NT/LM-Password. Cannot perform authentication. PEAP (and mschap) needs access to a good clear-text password, or an nt-password to compare against the request. I have this in my users configuratin file: lolo User-Password == entrar Reply-Message = Hola, lolo ¿Is this correct? If the server doesn't have a password for the user, then it can't check the password the user supplied. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html -- Artur Hecker artur[at]hecker.info - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: peap failure
Alan DeKok escribió: =?ISO-8859-1?Q?Manuel_S=E1nchez_Cuenca?= [EMAIL PROTECTED] wrote: Hello all, I have insalled the CVS version of Freeradius and I have configured it to use peap. I'm using Xsupplicant as client and a DWL-900AP+ as Access Point. Upgrade xsupplicant. They had a bug in an older version. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html I'm using the latest xsupplicant version (0.8b) -- == Manuel Sanchez Cuenca Dept. Ingenieria de la Informacion y las Comunicaciones Universidad de Murcia - Espana Tlf: +34 968364311 - Fax: 968364151 email: [EMAIL PROTECTED] www: http://skywalker.dif.um.es/~lolo - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: peap failure
Michael Griego escribió: Are you using the latest CVS snapshot? An issue causing the same symptoms that you are seeing was recently fixed. Try compiling the latest snapshot and see if that fixes the error. I get the same error with the freeradius-snapshot-20040509. --Mike On Fri, 2004-05-07 at 08:55, Manuel Sánchez Cuenca wrote: Hello all, I have insalled the CVS version of Freeradius and I have configured it to use peap. I'm using Xsupplicant as client and a DWL-900AP+ as Access Point. The problem is that the connect proccess fails, and lookig the radius log I have seen that the first phase is correct, but in the second phase I get this error: = rlm_eap: Request found, released from the list rlm_eap: EAP/mschapv2 rlm_eap: processing type mschapv2 rlm_eap_mschapv2: Response contains contradictory length 49 54 rlm_eap: Handler failed in EAP/mschapv2 rlm_eap: Failed in EAP select modcall[authenticate]: module eap returns invalid for request 7 modcall: group authenticate returns invalid for request 7 auth: Failed to validate the user. PEAP: Got tunneled reply RADIUS code 3 EAP-Message = 0x04080004 Message-Authenticator = 0x PEAP: Processing from tunneled session code 0x818afd0 3 EAP-Message = 0x04080004 Message-Authenticator = 0x PEAP: Tunneled authentication was rejected. rlm_eap_peap: FAILURE === Can anybody tell me what is happening? Thanks in advance. -- == Manuel Sanchez Cuenca Dept. Ingenieria de la Informacion y las Comunicaciones Universidad de Murcia - Espana Tlf: +34 968364311 - Fax: 968364151 email: [EMAIL PROTECTED] www: http://skywalker.dif.um.es/~lolo -- == Manuel Sanchez Cuenca Dept. Ingenieria de la Informacion y las Comunicaciones Universidad de Murcia - Espana Tlf: +34 968364311 - Fax: 968364151 email: [EMAIL PROTECTED] www: http://skywalker.dif.um.es/~lolo - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: peap failure
Are you using the latest CVS snapshot? An issue causing the same symptoms that you are seeing was recently fixed. Try compiling the latest snapshot and see if that fixes the error. --Mike On Fri, 2004-05-07 at 08:55, Manuel Sánchez Cuenca wrote: Hello all, I have insalled the CVS version of Freeradius and I have configured it to use peap. I'm using Xsupplicant as client and a DWL-900AP+ as Access Point. The problem is that the connect proccess fails, and lookig the radius log I have seen that the first phase is correct, but in the second phase I get this error: = rlm_eap: Request found, released from the list rlm_eap: EAP/mschapv2 rlm_eap: processing type mschapv2 rlm_eap_mschapv2: Response contains contradictory length 49 54 rlm_eap: Handler failed in EAP/mschapv2 rlm_eap: Failed in EAP select modcall[authenticate]: module eap returns invalid for request 7 modcall: group authenticate returns invalid for request 7 auth: Failed to validate the user. PEAP: Got tunneled reply RADIUS code 3 EAP-Message = 0x04080004 Message-Authenticator = 0x PEAP: Processing from tunneled session code 0x818afd0 3 EAP-Message = 0x04080004 Message-Authenticator = 0x PEAP: Tunneled authentication was rejected. rlm_eap_peap: FAILURE === Can anybody tell me what is happening? Thanks in advance. -- == Manuel Sanchez Cuenca Dept. Ingenieria de la Informacion y las Comunicaciones Universidad de Murcia - Espana Tlf: +34 968364311 - Fax: 968364151 email: [EMAIL PROTECTED] www: http://skywalker.dif.um.es/~lolo -- --Mike --- Michael Griego Wireless LAN Project Manager The University of Texas at Dallas - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Re: peap failure
=?ISO-8859-1?Q?Manuel_S=E1nchez_Cuenca?= [EMAIL PROTECTED] wrote: Hello all, I have insalled the CVS version of Freeradius and I have configured it to use peap. I'm using Xsupplicant as client and a DWL-900AP+ as Access Point. Upgrade xsupplicant. They had a bug in an older version. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html