(RADIATOR) Problems to use IEEE802.1x under Windows XP

Hugh Irvine hugh at open.com.au
Tue Dec 16 16:26:03 CST 2003


Hello Angel -

You will need to install the prerequisites as listed in the file  
"goodies/eap_peap.cfg".

The debug shown below shows that you have not installed one or more of  
the following:

# Requires Net_SSLeay.pm-1.21 or later from CPAN.
# Requires openssl 0.9.7beta3 or later from www.openssl.org
# Requires Digest-HMAC from CPAN
# Requires Digest-SHA1 from CPAN

regards

Hugh


On 17/12/2003, at 4:01 AM, Angel Ma Mtz.de Rituerto [TyN] wrote:

> Dear Sirs:
>
> I unable to validate as user under next scenario:
>
>  
>
> User PC: Wireless card into a laptop under Windows XP (with both Zero  
> conf. and IEEE802.1x activated, PEAP, MSCHAPv2, disabled the option to  
> use same user and password than those used in Windows).
>
>  
>
> The Access Point is a Buffalo WBR-G54 (firm 2.02) enabled the  
> IEEE802.1x and WEP. RadiusPORT 1812  (AuthPort  1812, defined on *.cfg  
> file)
>
> The Radiator ver. And patches are 3.7.1. It is working under Win98 PC.  
> Perl version is the 2.2.0
>
>  
>
> The configuration file is
>
> <AuthBy FILE>
>
>             Filename ./bufusers.txt
>
>             EAPType PEAP,TTLS,TLS,MD5,MSCHAP-V2
>
>       </AuthBy>
>
> The file EAP.PM includes the line:
>
>  
>
> package Radius::EAP_25;
>
> package Radius::EAP_26;
>
> package Radius::AuthFILE;
>
>  
>
> The file  AuthGeneric.pm incluye the line:
>
> use Radius::AuthFILE;   
>
>  
>
> But the Radiator answer and log file to the request are:
>
> *********************************************************************** 
> ****************************
>
> Tue Dec 1615:48:352003: DEBUG: Packet dump:
>
> *** Received from 192.168.29.121 port 2048 ....
>
> Code:       Access-Request
>
> Identifier: 0
>
> Authentic:  8<238><16>k<0><0><0><0><0><0><0><0><0><0><0><0>
>
> Attributes:
>
>             User-Name = "angel"
>
>             NAS-IP-Address = 192.168.29.121
>
>             Called-Station-Id = "000740b1c973"
>
>             Calling-Station-Id = "0007404ec631"
>
>             NAS-Identifier = "000740b1c973"
>
>             NAS-Port = 185
>
>             Framed-MTU = 1400
>
>             NAS-Port-Type = Wireless-IEEE-802-11
>
>             EAP-Message = <2><1><0><10><1>angel
>
>             Message-Authenticator =  
> !<14>A<14><145><194>+:<10><155><194>U<<203><253><213>
>
>  
>
> Tue Dec 1615:48:352003: DEBUG: Handling request with Handler  
> 'NAS-IP-Address = 192.168.29.121'
>
> Tue Dec 1615:48:352003: DEBUG:  Deleting session for angel,  
> 192.168.29.121, 185
>
> Tue Dec 1615:48:352003: DEBUG: Handling with Radius::AuthFILE:
>
> Tue Dec 1615:48:352003: DEBUG: Handling with EAP: code 2, 1, 10
>
> Tue Dec 1615:48:352003: DEBUG: Response type 1
>
> Tue Dec 1615:48:352003: ERR: Could not load EAP module Radius::EAP_25:  
> Can't locate Net/SSLeay.pm in @INC (@INC contains: . C:/Perl/lib  
> C:/Perl/site/lib .) at Radius/EAP_25.pm line 24.
>
> BEGIN failed--compilation aborted at Radius/EAP_25.pm line 24.
>
> Compilation failed in require at (eval 32) line 3.
>
>  
>
> Tue Dec 1615:48:352003: DEBUG: EAP result: 1, Unsupported default EAP  
> Response/Identity 25
>
> Tue Dec 1615:48:352003: INFO: Access rejected for angel: Unsupported  
> default EAP Response/Identity 25
>
> Tue Dec 1615:48:352003: DEBUG: Packet dump:
>
> *** Sending to 192.168.29.121 port 2048 ....
>
> Code:       Access-Reject
>
> Identifier: 0
>
> Authentic:  8<238><16>k<0><0><0><0><0><0><0><0><0><0><0><0>
>
> Attributes:
>
>             Reply-Message = "Request Denied"
>
> *********************************************************************** 
> ****************************
>
> Pls, inform about the needed modification to the fileAuthGeneric.pm  
> (or any other)
>
>  
>
> Thank you for your support.
>
> Best regards,
>
> Angel Mtz. De Rituerto
>
> ----------------------------------------------------------------------- 
> ----­­­------------------------
>
> Telecom y Novatecno
>
> User: pt-alava.es
>
> ----------------------------------------------------------------------- 
> ----­­­------------------------
>
>  
>

NB: have you included a copy of your configuration file (no secrets),
together with a trace 4 debug showing what is happening?

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
-
CATool: Private Certificate Authority for Unix and Unix-like systems.

===
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list