(RADIATOR) Problems to use IEEE802.1x under Windows XP
Hugh Irvine
hugh at open.com.au
Tue Dec 16 16:26:03 CST 2003
Hello Angel -
You will need to install the prerequisites as listed in the file
"goodies/eap_peap.cfg".
The debug shown below shows that you have not installed one or more of
the following:
# Requires Net_SSLeay.pm-1.21 or later from CPAN.
# Requires openssl 0.9.7beta3 or later from www.openssl.org
# Requires Digest-HMAC from CPAN
# Requires Digest-SHA1 from CPAN
regards
Hugh
On 17/12/2003, at 4:01 AM, Angel Ma Mtz.de Rituerto [TyN] wrote:
> Dear Sirs:
>
> I unable to validate as user under next scenario:
>
>
>
> User PC: Wireless card into a laptop under Windows XP (with both Zero
> conf. and IEEE802.1x activated, PEAP, MSCHAPv2, disabled the option to
> use same user and password than those used in Windows).
>
>
>
> The Access Point is a Buffalo WBR-G54 (firm 2.02) enabled the
> IEEE802.1x and WEP. RadiusPORT 1812 (AuthPort 1812, defined on *.cfg
> file)
>
> The Radiator ver. And patches are 3.7.1. It is working under Win98 PC.
> Perl version is the 2.2.0
>
>
>
> The configuration file is
>
> <AuthBy FILE>
>
> Filename ./bufusers.txt
>
> EAPType PEAP,TTLS,TLS,MD5,MSCHAP-V2
>
> </AuthBy>
>
> The file EAP.PM includes the line:
>
>
>
> package Radius::EAP_25;
>
> package Radius::EAP_26;
>
> package Radius::AuthFILE;
>
>
>
> The file AuthGeneric.pm incluye the line:
>
> use Radius::AuthFILE;
>
>
>
> But the Radiator answer and log file to the request are:
>
> ***********************************************************************
> ****************************
>
> Tue Dec 1615:48:352003: DEBUG: Packet dump:
>
> *** Received from 192.168.29.121 port 2048 ....
>
> Code: Access-Request
>
> Identifier: 0
>
> Authentic: 8<238><16>k<0><0><0><0><0><0><0><0><0><0><0><0>
>
> Attributes:
>
> User-Name = "angel"
>
> NAS-IP-Address = 192.168.29.121
>
> Called-Station-Id = "000740b1c973"
>
> Calling-Station-Id = "0007404ec631"
>
> NAS-Identifier = "000740b1c973"
>
> NAS-Port = 185
>
> Framed-MTU = 1400
>
> NAS-Port-Type = Wireless-IEEE-802-11
>
> EAP-Message = <2><1><0><10><1>angel
>
> Message-Authenticator =
> !<14>A<14><145><194>+:<10><155><194>U<<203><253><213>
>
>
>
> Tue Dec 1615:48:352003: DEBUG: Handling request with Handler
> 'NAS-IP-Address = 192.168.29.121'
>
> Tue Dec 1615:48:352003: DEBUG: Deleting session for angel,
> 192.168.29.121, 185
>
> Tue Dec 1615:48:352003: DEBUG: Handling with Radius::AuthFILE:
>
> Tue Dec 1615:48:352003: DEBUG: Handling with EAP: code 2, 1, 10
>
> Tue Dec 1615:48:352003: DEBUG: Response type 1
>
> Tue Dec 1615:48:352003: ERR: Could not load EAP module Radius::EAP_25:
> Can't locate Net/SSLeay.pm in @INC (@INC contains: . C:/Perl/lib
> C:/Perl/site/lib .) at Radius/EAP_25.pm line 24.
>
> BEGIN failed--compilation aborted at Radius/EAP_25.pm line 24.
>
> Compilation failed in require at (eval 32) line 3.
>
>
>
> Tue Dec 1615:48:352003: DEBUG: EAP result: 1, Unsupported default EAP
> Response/Identity 25
>
> Tue Dec 1615:48:352003: INFO: Access rejected for angel: Unsupported
> default EAP Response/Identity 25
>
> Tue Dec 1615:48:352003: DEBUG: Packet dump:
>
> *** Sending to 192.168.29.121 port 2048 ....
>
> Code: Access-Reject
>
> Identifier: 0
>
> Authentic: 8<238><16>k<0><0><0><0><0><0><0><0><0><0><0><0>
>
> Attributes:
>
> Reply-Message = "Request Denied"
>
> ***********************************************************************
> ****************************
>
> Pls, inform about the needed modification to the fileAuthGeneric.pm
> (or any other)
>
>
>
> Thank you for your support.
>
> Best regards,
>
> Angel Mtz. De Rituerto
>
> -----------------------------------------------------------------------
> ----------------------------
>
> Telecom y Novatecno
>
> User: pt-alava.es
>
> -----------------------------------------------------------------------
> ----------------------------
>
>
>
NB: have you included a copy of your configuration file (no secrets),
together with a trace 4 debug showing what is happening?
--
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
-
CATool: Private Certificate Authority for Unix and Unix-like systems.
===
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.
More information about the radiator
mailing list