[RADIATOR] Set Realm
Zod Mansour
zod at reachlocal.com
Mon Dec 14 19:41:05 CST 2009
I am still not being passed to the correct TunneledByTTLS handler. The
Realm does not get tacked on:
LogDir /var/log/radius
DbDir /etc/radiator
# Use a low trace level in production systems. Increase
# it to 4 or 5 for debugging, or use the -trace flag to radiusd
Trace 4
#RewriteUsername s/(.*)\\(.*)/$1/
# Listen for RADIUS requests from the Cisco WLAN controller @
10.10.19.35
<Client 10.10.19.35>
Secret sZ#1S!4k[T*<aCD~rY1^3=Z}\GHE-Wc-.K!f4'yQk9-F~(>?**-
MN`qqt3hByAJ
DupInterval 10
# Identifier rlwlc1
</Client>
<Handler Called-Station-Id = /rlwireless/>
RewriteUsername s/(.*)/$1\@RLWIRELESS/
<AuthBy FILE>
#RewriteUsername s/^RLCORP\\([^@]+).*/$1/
EAPType PEAP,TTLS,TLS,MD5,Generic-Token,LEAP,MSCHAP-
V2,FAST
EAPTLS_CAFile %D/cert/cacert.pem
EAPTLS_CertificateFile /etc/radiator/cert/
server.key.pem
EAPTLS_PrivateKeyFile %D/cert/radius.key
EAPTLS_CertificateType PEM
AutoMPPEKeys
</AuthBy>
</Handler>
<Handler Called-Station-Id = /rltechops/>
<AuthBy FILE>
EAPType PEAP,TTLS,TLS,MD5,Generic-Token,LEAP,MSCHAP-
V2,FAST
EAPTLS_CAFile %D/cert/cacert.pem
EAPTLS_CertificateFile /etc/radiator/cert/
server.key.pem
EAPTLS_PrivateKeyFile %D/cert/radius.key
EAPTLS_CertificateType PEM
EAPAnonymous %0 at RLTECHOPS
AutoMPPEKeys
# If you want to disable rltechops comment out above and uncomment below
# <AuthBy INTERNAL>
# DefaultResult Reject
# </AuthBy>
</AuthBy>
</Handler>
<Handler TunnelledByTTLS=1, Realm=RLTECHOPS>
# RewriteUsername s/(.*)\\(.*)/$2/
RewriteUsername s/(.*)\@(.*)/$1/
<AuthBy LDAP2>
Debug 255
ServerChecksPassword
NoDefault
Host localhost
Port 389
BaseDN dc=reachlocal,dc=com
# see /etc/openldap/slapd.conf
AuthDN cn=Manager, dc=domain, dc=com
AuthPassword rxxxxxxxx
UsernameAttr uid
PasswordAttr userPassword
AddToReply Service-Type = Framed-User, Framed-
Protocol = PPP,Tunnel-Type = 0:VLAN,Tunnel-Medium-Type = 0:802,Tunnel-
Private-Group-ID = 30
</AuthBy>
</Handler>
<Handler TunnelledByTTLS=1>
RewriteUsername s/(.*)\\(.*)/$2/
RewriteUsername s/(.*)\@(.*)/$1/
<AuthBy LDAP2>
Debug 255
ServerChecksPassword
NoDefault
Host localhost
Port 389
BaseDN dc=reachlocal,dc=com
# see /etc/openldap/slapd.conf
AuthDN cn=Manager, dc=domain, dc=com
AuthPassword xxxxxxxx
UsernameAttr uid
PasswordAttr userPassword
AddToReply Service-Type = Framed-User, Framed-
Protocol =
PPP,TUNNEL_TYPE=VLAN,TUNNEL_MEDIUM_TYPE=802,TUNNEL_GROUP_ID=28
AutoMPPEKeys
</AuthBy>
</Handler>
Mon Dec 14 17:32:43 2009: NOTICE: SIGTERM received: stopping
Mon Dec 14 17:32:43 2009: DEBUG: Finished reading configuration file '/
etc/radiator/radius.cfg'
Mon Dec 14 17:32:43 2009: DEBUG: Reading dictionary file '/etc/
radiator/dictionary'
Mon Dec 14 17:32:43 2009: DEBUG: Creating authentication port
0.0.0.0:1645
Mon Dec 14 17:32:43 2009: DEBUG: Creating accounting port 0.0.0.0:1646
Mon Dec 14 17:32:43 2009: NOTICE: Server started: Radiator 4.5 on
admin2.wh.reachlocal.com (LOCKED)
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 191
Authentic: <6><<18><166><172><148><215><208><18><141><236>#Z?_<212>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message = <2><1><0><8><1>zod
Message-Authenticator = <213>c<227>-<23><157>_
$5<171><7><182>O<131><162><195>
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 1, 8, 1
Mon Dec 14 17:33:44 2009: DEBUG: Response type 1
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP PEAP Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
PEAP Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP PEAP
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 191
Authentic: <252><176><223><160>,<244><127><139><17>xF<221>(I<193><228>
Attributes:
EAP-Message = <1><2><0><6><25>!
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 192
Authentic: <254><169><235><184><251><143><160><225>)<9>U<212>sj#<162>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message = <2><2><0><6><3><21>
Message-Authenticator = <179>%n<214>@f-<169><180>-
<168><139><191><168>Hy
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 2, 6, 3
Mon Dec 14 17:33:44 2009: DEBUG: Response type 3
Mon Dec 14 17:33:44 2009: INFO: EAP Nak desires type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP TTLS
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 192
Authentic: <139><255><238><172> 8<234><203>d<198><147>M|<135><21><235>
Attributes:
EAP-Message = <1><3><0><6><21>
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 193
Authentic: *<128> <168>a<158><236><151><140><1><22><203>t<130><23><177>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message =
<2><3><0>p<21><128><0><0><0>f<22><3><1><0>a<1><0><0>]<3><1>K&<231>x<204><10><189><207><136><164><156>a<178>rr<172><240>}<232><150><164><23><167>K<247>3<242><140><154><150>qU<0><0>6<0>/<0><5><0><4><0>5<0><10><0><9><0><3><0><8><0><6><0>2<0>3<0>8<0>9<0><22><0><21><0><20><0><19><0><18><0><17><0>4<0>:<0><24><0><27><0><26><0><23><0><25><0><1><1><0>
Message-Authenticator =
a<14>^<176><150><244><180><219><149>,c<160><19>q<253>p
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 3, 112, 21
Mon Dec 14 17:33:44 2009: DEBUG: Response type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS data, 24576, 3, -1
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS SSL_accept result: -1, 2, 8576
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP TTLS
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 193
Authentic: <28> <244>Nd<0><213>_:<133><184>,2C9<203>
Attributes:
EAP-Message =
<
1
>
<
4
>
<
5
>
<
30
>
<
21
>
<
192
>
<
0
>
<
0
>
<
12
>
<
131
>
<
22
>
<
3
>
<
1
>
<
0
>
J
<
2
>
<
0
>
<0>F<3><1>K&<231>xO<254><218><23><144>'h<229><235><239><171>ba<165>_>?
<229>=D<172><11><132>L<242><237>A<176> <244><3><136>-
<
218
>
<
22
>
<
<
18
>
<
219
>
<
179
>
{a
<
200
>&]<132><28>}<206><163><167><147><182>X5<212><160><205><27>C<233>~<0>/
<
0
>
<
22
>
<
3
>
<
1
>
<
12
>
&<
11
>
<
0
>
<
12
>
"<
0
>
<
12
>
<
31
>
<
0
>
<
6
>
P0
<
130
>
<
6
>
L0
<
130
>
<
4
>
4
<
160
>
<
3
>
<
2
>
<
1
>
<
2
>
<
2
>
<
1
>
<
15
>
0
<
13
>
<
6
>
<
9
>
*<
134
>
H
<
134
>
<
247><13><1><1><4><5><0>0<129><152>1<26>0<24><6><3>U<4><3><19><17>Reach
Local, Inc.1<30>0<28><6><3>U<4><10><19><21>Certificate
Authority1
<
11
>
0
<
9
>
<
6
>
<
3
>
U
<
4
>
<
6
>
<
19
>
<
2
>
US1
<
19
>
0<17><6><3>U<4><8><19><10>California1<20>0<18><6><3>U<4><7><19><11>Los
Angele
EAP-Message = s1"0 <6><9>*<134>H<134><247><13><1><9><1><22><19>root at reachlocal.com0
<30><23><13>091103190303Z<23><13>101103190303Z0<129><162>1!
0
<
31
>
<
6
>
<
3
>
U
<
4
>
<
3
>
<19><24>admin2.wh.reachlocal.com1<26>0<24><6><3>U<4><10><19><17>Reach
Local, Inc.
1
<
11
>
0
<
9
>
<
6
>
<
3
>
U
<
4
>
<
6
>
<
19
>
<
2
>
US1
<
19
>
0<17><6><3>U<4><8><19><10>California1<20>0<18><6><3>U<4><7><19><11>Los
Angeles1)0'<6><9>*<134>H<134><247><13><1><9><1><22><26>servicedesk at reachlocal.com0
<130><2>"0<13><6><9>*<134>H<134><247><13><1><1><1><5><0>
EAP-Message =
<3><130><2><15><0>0<130><2><10><2><130><2><1><0><206><158><139><253><221>l<221>82*<26><149>1(<20><184>N<254>g<129>N<147>(<152>$<244><150><227>4<217><215><205><228><239>zL<229>K6<174>r<1>&<173>1i<25><162>Yb<215><27><221><216>F'E<187><221><149><159><254><211>p<28>=\<132><230><185><151>_<219>cN<168><235>5<131><196><143>]<217><209><173>{<162><200>Y<137>/<221>0<178><194><253><31>N<240><243><188><6><140><199><24>,<198><228>V<171><217><165><197>%<203><182>*<172><210><129><204>X<6>^<205>QP<225><192><9><202><167>C<5><132><239><195><223>[M<8><141><9><236>R$<183><180><237><217><10><5>hL<235>Q<242><232>9<14><159><19><135><232><216><146>d<15><150><185><214>D<10>/"Lac<182><3><210><178><255>H<20>TV<203>H<153><29>F<220><212><23><z<217><203><1><10>k<170>IQ<175><208>F.<127><135><240><6><226><214><169><233>g<23>~<240><188>=<202><173><244><30><248><246>NBM<254><165>%<246>A%h
EAP-Message =
<
20
>
<
127
>
<
238
>
<
230
>
<
207
>
<
2
>
<
210
>
4
<
156
>
<
127
>
<
187
>
X
<
16
>
<
178
>
}<
229
>
<
192
>
<
23
>
]U
<
148
>
<
163
>
<
230
>
<
218
>
<
219
>
>
<
199><245>t(r<14>Ai<236>h<145>?:<143><195><200><211><255><181>D<155><9>
<172><198>E<4>_\<142>{*<<131>'<172><23><5><172>`<141><145>|
<175><27><249><9>J]:<0><14>N<232><154><219>6<181><207>E<242><22>=TQ<136><161>F!<157><8>cc<227><217><13><11><151><211><237><234>r<160><165>/<201><183><223><17><238>I=<136>{<251><138>]<175><225><148>N<130>0p<7>OP.g[<204>b<207>"<16><199>V<215><205><185>z<127>3o6&b<186>)f<182><13><171><226>75{r at u<242><238><245>FbZFC<136><203><249><184><248>:-<244>V<163>\<183>^<210>+8O<29><198>%<231>yd<187><0>6<228><25>@<234><216>?Q<227><150>Q<27><6><4>=<6>3<227><146>2<149><2>A<253><31><195><149>2o<1>IZ<254>%<27>tM<180>f|h<25><7>*<138><245><231><0><213><144><178><207><171><146>
EAP-Message = <235>CM=<245><130>O<165>L?
<24><132><146><145><153>aW<134><217>-
<2><3><1><0><1><163><129><148>0<129><145>0<9><6><3>U<29><19><4><2>0<0>0<11><6><3>U<29><15><4><4><3><2><5><160>0w<6><3>U<29><17><4>p0n<130><6>admin2<130><9>admin2.wh<130><21>admin2.reachlocal.com<130><6>radius<130><24>radius.wh.reachlocal.com<130><21>radius.reachlocal.com<130><9>radius.wh0<13><6><9>*<134>H<134><247><13><1><1><4><5><0><3><130><2><1><0><187>ThMI}<28><26><149><199><211><1><0><211>(N<153>`<197><143>0<228><181>H<215><212><165>CQ<9><140>V<234><199><198>c4<155>W$-<213>UXV<191><183><194><212><179><180><187><165>"<173><215>r
EAP-Message =
<
182
>
<
146
>
^
<
196
>
<
163
>
<
163
>
<
29
>
<
18
>
<
210
>
<
133
>
<
20
>
9
<
243
>
<
232
>
<
147
>
<
29
>
P
<
19
>
<
189
>
<
13
>
hh
<
223
>
<
3
>
<
200
>
<
210
>
<
238
>
M<225>V<160><6><127><180><187><199><225><137>2<26>F<239><190><216><170>
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 194
Authentic: <133>m<7><211>U<215>Z<227>@<196><190><238><205><186>t<216>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message = <2><4><0><6><21><0>
Message-Authenticator =
7<164><146><170><173>{<252>ad<29><127><156><17><243><26>!
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 4, 6, 21
Mon Dec 14 17:33:44 2009: DEBUG: Response type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP TTLS
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 194
Authentic: <171><132><7><23> <27>z<14>d<221><149><240>=<173><9><148>
Attributes:
EAP-Message =
<1><5><5><26><21>@bJAV<173><253><16><141><196>=6<231>Gd<220>B<204><214><192>o<212><246>NM<183><138><228>d<155><22>C{<18>#<202><220><200><218>.u<180>=<228><187><237><<30><248><245>p<228><180>eP<219><26><187>AQ<10><150>4<228><188>@<19><7><160>n<30>!<136>`<20><19>G$-<24><239><204><163><197><234><30>e<163><223><198>iN<195><249><254>T<186><146><30>r<175><239>iK<191><196><166><195><200><154>7<172><206><216><216><135><227><212><1><27><160>TZ<239>:<182><141><131><0><132><189><145><220>!<24><27><28>Hz<228>@<203><192>p<1><243><189>eQ<5>y<171><197>[<15>u/<156>N<14><205><200><185>c<213>_vs`n<30><165><159>N<173><184><142><188>|SPLi<239><197><186><200>T'L<154><153>u<165><136><159>/G<152><188>-6<221><17><0>_<241>r<219><18><21><251><205><25>@<196><1><234><211><130><193>@\<198><145><152><159><147><244><194><160>+nLS<3><202>2&<169>Z<158>F<223>!3<136><15>
EAP-Message =
<253>m<226>N0<25>Ggvq<3>}0<198><178><139><227><182><175>)w,<3>E/
<
147
>
<
180
>
<
8
>
<
204
>
<
250
>
3
<
183
>
<
238
>
<
135
>
S
<
216
><22><139><209><136>l<187><151>qlK<134><208><247><225><180><157><202>f
%<
153
>
<
184
>
E
<
176
>
<
167
>
N
<
9
>
<
240
>
<
142
>
<
212
>
<189><195><29><130><140><139>#M<0><188>)ow<164><6><232><194><21><228>/
<
1
>
<
174
>
4
<
145
>
<
228
>
<
248
>
y
<
237
>
g
<
154
>
s
.,<
162
>
6
#<
156
>
<
228
>
<179><177>s0<131><195>c=<236>@<197>^Rn3<235>p<201><1><22><6><20><208>/
<2><252><18>7<204><26><207><217><176><156><188><30><246>!
<
154
>
{<
130
>
<
174
>
ZS
<
23
>
<
165
>
6
^
v
<
28
>
jD
}<
212
>
;<
230
>
^
r
<
209
>
<
18
>
<
0
>
<
5
>
<
201
>
0
<
130
>
<
5
>
<
197
>
0
<
130
>
<
3
>
<
173
>
<
160
>
<
3
>
<
2
>
<
1
>
<
2
>
<
2
>
<
9
>
<
0
>
<
221
>
<
177
>
<
152
>
<
150
>
<
226
>
<
29
>
8
[0
<
13
>
<
6
>
<
9
>
*<
134
>
H
<
134
>
<
247><13><1><1><4><5><0>0<129><152>1<26>0<24><6><3>U<4><3><19><17>Reach
Local, Inc.1<30>0<28><6><3>U<4><10><19><21>Certif
EAP-Message = icate
Authority1
<
11
>
0
<
9
>
<
6
>
<
3
>
U
<
4
>
<
6
>
<
19
>
<
2
>
US1
<
19
>
0<17><6><3>U<4><8><19><10>California1<20>0<18><6><3>U<4><7><19><11>Los
Angeles1"0 <6><9>*<134>H<134><247><13><1><9><1><22><19>root at reachlocal.com0
<
30
>
<
23
>
<
13
>
090205195741Z
<23><13>380622195741Z0<129><152>1<26>0<24><6><3>U<4><3><19><17>Reach
Local, Inc.1<30>0<28><6><3>U<4><10><19><21>Certificate
Authority1
<
11
>
0
<
9
>
<
6
>
<
3
>
U
<
4
>
<
6
>
<
19
>
<
2
>
US1
<
19
>
0<17><6><3>U<4><8><19><10>California1<20>0<18><6><3>U<4><7><19><11>Los
An
EAP-Message = geles1"0 <6><9>*<134>H<134><247><13><1><9><1><22><19>root at reachlocal.com0
<
130
>
<
2
>
"0
<
13
>
<
6
>
<
9
>
*<
134
>
H
<
134
>
<
247><13><1><1><1><5><0><3><130><2><15><0>0<130><2><10><2><130><2><1><0><201><205><205><229><163><254><192>#<26>2q)<127>A<147><148><251>jF<16><151><215><145>O<155><186><172><253><176><151>o(<202><243>U<213>3gr<205><210>80<157>i<207><29>o<20>))$"<J<176><252><175>j<172><217><13><183><9><11><148>k<228><187>^S<166><127><191>'<127><205><192><201>m<211>]<233>W<148>s<156><158><190><208>}<208><231>9<232><127><186>~<24><156>,<142>G$<165>Ao<190>~<193>J<183><218>\<168><201><204><200><14><199>`<173>A<8><168><192><203>bM <22><164><159><221><255><15><237>`&<150><150><24><5><166><145><230><5><185><214><187><160><176><158><198><202><251><146><250><221><215>U>{W<189><255>R<201><134><17>2x<149>s<26><134>j'q
EAP-Message =
<177><18><185><31>&2<237><170><206><231><144><<138><195>{:=<21><149><199>w<11>mi80<3><23><184><27>5<176><194>{)<254>war><5><8>(<235><172><250><25>i<246>Kq<28><233>|<144><252>k{4<248>5<158><233>P<197><3>`<179><154>F#<178>h~<245>K:1_~.g<147>jL<30>:<212>aO<168><137><207>s<228>)<14><135><161><165>H<155>]<213>O<132>Q+<165><229>sl<247><217><218><205>(<246>J<128>s&%<149>9<245>$fy<249>Ys<222><139>;~<173><226>eW<12>)<250><197><201>l<224>S<250><25><159>eQx<167><6><149><187>U<179><240><9>><173><0>f<185><194><234>7<194>B<160><146>}<153><250><135><216><187>P<230><142><209><14>7]Y2<240>4<185>ua&<253><132><192><171>H<244><9>#7<137><220><237><163>&3<249><12><213>.<186>"w<190><139><154><7>h;0L<23><254>C~<21><19><211><240><5>(~t<190><198>y{g0hU<222>X<246><178><202><195><11><234>
EAP-Message = <237><160>q<227>:8<173><143><0><160><206>}e!
<
132
>
<
232
>
l
<
222
>
<
135>&<130><7><188><249><168><145><168>>;jP<166><196>&(C*<163>O<141><157>
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 195
Authentic: <191>s<213><165><182><186><242><243><175><176><15><20>-
<207><207>0
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message = <2><5><0><6><21><0>
Message-Authenticator =
qd^<144><141><172><149><140>n<220>]<245><193><232>4i
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 5, 6, 21
Mon Dec 14 17:33:44 2009: DEBUG: Response type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP TTLS
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 195
Authentic: E<14>C<251>T<166><234><231><230>&<232><228><141>e70
Attributes:
EAP-Message =
<1><6><2>a<21><0><205>S<1><220><4><208>X<227><240>i<135><161>
<167>D8<0>uP<191><193>y<189><24><177>T3<234><164><208><255>4M<143><138><155><129><236><255><2><3><1><0><1><163><16>0<14>0<12><6><3>U<29><19><4><5>0<3><1><1><255>0<13><6><9>*<134>H<134><247><13><1><1><4><5><0><3><130><2><1><0><198>"<187><198>;<221><181><134>lN<170><11>M<<207><247><213>:/syC<237><197><133><161>s<152><14><151><1>R<218>"<223><206><221>"H<219>8<170><14>K<227><253>j<251><171>`<17><190><136><229>TIq<221>0A<9><219><183><166>=<12><135><20>\<160>]<179><17>X<238>]<251><195><211><187><30>5!<240><157><2><18><131>jZ<172>|<6><183>i<181><230><245><191>Q<215>3<197><136>t<140>-<24><223><129>#<204>6<241><199><133>><23>W<236><143>x<157>f<176>G<155><166><158>#<222><183><153>@I`<205><145><158><184>r<218><197><246><17><237><223><16><187><132>d<149>+]<214><236><202>o<9><15><184><139>k}&
EAP-Message =
<
195
>
<
174
>
<
144
>
_
<
28
>
1
<
248
>
i
<
189
>
<
235
>
<229>X9<8><203>}}z<248><28><155><7><255><192><253><252>s<183><145><239>
+
#<
178
>
<
177
>
<
26
>
<
20
>
r
<
186
>
p
<
230
>
)<
189
>
gG
<
205
>
<
190
>
#<
226
>
h
<
219
>
xe
<
235
>
<
161
>
<
190
>
7
<
145
>
<
145
>
<151>Q<133><199><158><193><197><172>@<16><165><191>DE9<222><171><199>-
<6><224><132>\<18>!
<134><7><184>-.<241>4<210><162><29><207>0<177>N<24>rp<171><163><10><10>
$<134>u"<133>-
<
4
>
<
157
>
<
240
>
<
210
>
2
<
30
>
<
163
>
<
18
>
<
161
>
<246>4nnbI<11><164><197><216><253>Gd<171>;<185><229><237><242>7E<182>-
Q.<194><179>%<163>o\<143><186>a<199>hO;
[b<202><172><132>"<17><197><25><5>^!
w<227><228><148><12><16><230>M<231>!
<
255
>T<236>R<17><145><171>wj<188>S<163><240><24><202><239><167>I~<22><243>
\f
#<
234
>
~
#<
231
>
<
208
>
<
214
>
<
130
>
<
158
>
k
<
212
>
<
248
>
g
<
151
>
<
198
>
<181>3<196>*n<195><7>t<232><18>><151><254>R<27>'<191><134>DZ<217><132>
<8><184><31><223>8<254><195><232><203>o<195><134><16>
EAP-Message =
<
161
>
<
159
>
<
11
>
^
<
239
>
<
162
>
<
166
>
<
131
>
<
209
>
<
199
>
<
252
>
<
252
>
<
236
>
S
<
201
>
,<
3
>
<
203
>
<
1
>
<
212
>
<
148
>
r
<
208
>
7
<
166
>
d
<
170
>
<
169
>
j
<
252
>
<
191
>
<
171
>
<
208
>
v
@<
208
>
<
139>A<170><176><224><238><187>@_<155><3><167><205><232><159><14><241>=
<2><167><232>
%,<
224
>
H
<
151
>
<
221
>
<
14
>
<
183
>
<
213
>
<
131
>
Vk
<
26
>
<
248
>
Ys
<
167
>
<
173
>
<
8
>
<
136
>
,<
177
>
<
162
>
<
179
><180>D{<244><224><15><170>t<215><1><26><<22><3><1><0><4><14><0><0><0>
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 196
Authentic:
<197><208><166><229><176><171><14><12>Q<163><200><16><16><135>k<250>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message =
<
2
>
<
6
>
<
2
>
P
<
21
>
<
128
>
<
0
>
<
0
>
<
2
>
F
<
22
>
<
3
>
<
1
>
<
2
>
<
6
>
<
16
>
<
0
>
<
2
>
<
2
>
<
2
>
<
0
>
fO
<
153
>
<
216
>
d
<
19
>
I
<
163
>
<
162
>
zo
<
240
>
p
<
238
>
Qjv7
<
27
>
:F
<
226
>
u
"pj
<
240
>
<
136
>
<
155
>
<
201
>
Y
<
20
>
<
27
>
<
196
>
z
<
145
>
<
1
>
<
248
>
<
29
>
(<
133
><136>z<163>B@}<183><208><130><3><199>><211><24><206><253><158>AU<19>/
Kru
<
188
>
<
132
>
<
238
>
"p
<
153
>
u
<
199
>
9
<
21
>
<
224
>
<
30
>
<
200
>
<
175
>
<
239
>
<221><6><179>E<191>9}<235><141>y<231>u<255><139>v<23>o}<208><204><235>|
>
<
207
>
<
242
>
<
30
>
a
<
162
>
<
1
>
i2
"<
200
>
J
)<
213
>
<
252
>
u
<
143
>
<
197
>
<
226
>
V
{u
<
129
>
<
178
>
<
24
>
<
160
>
3
<
215
>
<
189
>
<
11
>
<
199
>
<
207
>
Hu
<
175
>
<
204
>
<
204
>
<
225
>
w
<
215
>
<
148
>
<
9
>
<
179
>
&<
5
>
<
217
>
WG
<
241
>
<
140
>
_
<
29
>
2
<
184
>
<
234
>
3
<
136
>
<
212
>
<
195
>
<
232
><235>LZ<179>:<28><244><165><13><141><239>@<164><18><243>S<251><220>k/
<
191
>
{<
168
>
<
159
>
<
220
>
G
<
16
>
<
192
>
<
4
>
n
<
223
>
<
15
>
<
139
>
<
217
>
Hjl<227><225> )<250><200><188><159><15>x<241><246><156><227>kt8w<168>(|
a<172><7><250><140><8><247><201><198>,S<212>
EAP-Message =
<
174
>
<
13
>
;u
<
134
>
Z
<
228
>
<
147
>
<
12
>
>
<
163
>
<
155
>
<
232
>
<
253
>
<
245
>
<
177
>
<
130
>
<
244
>
(l
<
222
>
<
150
>
qM
>
<
236
>
<
197
>
<
172
>
<
200
>
BB
<
191
><153><168><242><1><8>]0q<240><156><208><156><191>K<246><30>F=.<252>/
<173>S<206>><246><221><155>-<206>.<8><207><153>{<180>|<194><241><18>
<
130
>
ry
<
28
>
LU
<
209
>
<
148
>
<
251
>
<
161
>
<
14
>
n
<
223
>
<
128
>
<
184
>
p
<
220
>
h
<
1
>
<
205
>
S
<
145
>
<
147
>
<
5
>
t
<
193
>
<
163
>
<
229
>
{<
147
>
<
231
>
<
197
>
<
14
>
<
202
>
<
152
>
<
254
>
<
5
>
<
13
>
<
198
>
@[<
136
>
<
226
>
<
155
>
<
175
>
<
11
>
<
215
>
n
<
186
>
.<
7
>
<
171
>
<253>P<20><151>X31<188><7><3><12><237><248>YQ<223><186><219><240><19>8F
$gsE,<255>OSe<225><0><7><255>u.<14>@<189>n<195><19><205>n`q
+h<160><240><179><209>-,<237><28>b<226><141><201><159><197><248>i<148><213><11><129><30><7>x<164>;<192>"'<3><197><255><140><233>z:P<234>F<180>Z<210><12><160><213><191><191><195>{<8>"Bo2<220><199>H<176><5><143><181>C<192><234><14>b%@d<15>q<136>\<27><248>}<131>x<172>
EAP-Message =
<157><248><245>1<196><175>4<28><165><210>6<131><135><165><152>j<163><29><247>w<221><177><231><127><209><168>z<20><3><1><0><1><1><22><3><1><0>0<234><208><19><205>X<147><145>jIqb<240>2q<170><194><176>G<209>f<199><134>j<30>:<230><191><8>i<14><208>m<146>{<159><173><0><214><20>'<9>g<196><135><22><166><241>R
Message-Authenticator = <164>!na <210>zb<21>K<220><142><170><127>><155>
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 6, 592, 21
Mon Dec 14 17:33:44 2009: DEBUG: Response type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS data, 8576, 6, 3
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS SSL_accept result: 1, 0, 3
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 3, EAP TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: CHALLENGE, EAP
TTLS Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Access challenged for zod: EAP TTLS
Challenge
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Challenge
Identifier: 196
Authentic: <178><21><204><171>0<221><162><216><172>
\<130>UU<196><12><186>
Attributes:
EAP-Message =
<
1
>
<
7
>
<
0
>
E
<
21
>
<
128
>
<
0
>
<
0
>
<
0
>
;<
20
>
<
3
>
<
1
>
<
0
>
<
1
>
<
1
>
<22><3><1><0>0<31><133><129>X<231><236><237>6<206><13><161><246>g<12>
1KS<245>\<142>*^<226><189><180><143><232><194><157>Q<176>c<160>b
%<5>f<145><172><5>2<144><237><26><255><250>R
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Received from 10.10.19.35 port 32769 ....
Code: Access-Request
Identifier: 197
Authentic:
h<173><20><204><170><141><230><242><140><179><162><<228><231><250><228>
Attributes:
User-Name = "zod"
Calling-Station-Id = "00-1e-c2-bf-70-91"
Called-Station-Id = "00-26-cb-11-23-b0:rltechops"
NAS-Port = 3
NAS-IP-Address = 10.10.19.35
NAS-Identifier = "rlwlc1"
Airespace-WLAN-Id = 1
Service-Type = Framed-User
Framed-MTU = 1300
NAS-Port-Type = Wireless-IEEE-802-11
Tunnel-Type = 0:VLAN
Tunnel-Medium-Type = 0:802
Tunnel-Private-Group-ID = 30
EAP-Message =
<2><7><0>O<21><128><0><0><0>E<23><3><1><0>@<29>Z"<249><178><210><225><200>I<13><222>Q<233><221><246><156><174><127>;<128><144><152><136><5><247><188><223><227>nx<4><156><180>F8<215><174><20>gC<228><139><196><220><206><187>R<135><17>]<222><2>a$+<<252><150><139>z<254><197><137><221>
Message-Authenticator = <19>w
Z<190>9<184><220><244>L[<144><135><183><222><160>
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler 'Called-
Station-Id = /rltechops/'
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod,
10.10.19.35, 3
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthFILE:
Mon Dec 14 17:33:44 2009: DEBUG: Handling with EAP: code 2, 7, 79, 21
Mon Dec 14 17:33:44 2009: DEBUG: Response type 21
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS data, 3, 7, 6
Mon Dec 14 17:33:44 2009: DEBUG: TTLS Tunnelled Diameter Packet dump:
Code: UNDEF
Identifier: UNDEF
Authentic: UNDEF
Attributes:
User-Name = "zod"
User-Password = 5ull070d<0><0><0><0><0><0><0><0>
Mon Dec 14 17:33:44 2009: DEBUG: EAP TTLS inner authentication request
for zod
Mon Dec 14 17:33:44 2009: DEBUG: Handling request with Handler
'TunnelledByTTLS=1'
Mon Dec 14 17:33:44 2009: DEBUG: Rewrote user name to zod
Mon Dec 14 17:33:44 2009: DEBUG: Rewrote user name to zod
Mon Dec 14 17:33:44 2009: DEBUG: Deleting session for zod, 10.10.19.35,
Mon Dec 14 17:33:44 2009: DEBUG: Handling with Radius::AuthLDAP2:
Mon Dec 14 17:33:44 2009: INFO: Connecting to localhost:389
Mon Dec 14 17:33:44 2009: INFO: Attempting to bind to LDAP server
localhost:389
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got result for
uid=zod,ou=People,dc=reachlocal,dc=com
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got uid: zod
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got cn: Zod Mansour
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got givenName: Zod
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got sn: Mansour
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got mail: zod at reachlocal.com
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got objectClass: person
organizationalPerson inetOrgPerson posixAccount top shadowAccount
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got shadowWarning: 7
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got loginShell: /bin/bash
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got uidNumber: 1030
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got gidNumber: 1030
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got homeDirectory: /home/zod
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got gecos: Zod Mansour
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got telephoneNumber:
+1(818)274-0260x1110
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got userPassword: {crypt}
$1$G5nM1ydp$1/J.oGhql3P.c7aYXswu20
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got shadowLastChange: 13886
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got shadowMax: 99998
Mon Dec 14 17:33:44 2009: DEBUG: LDAP got destinationIndicator: techops
Mon Dec 14 17:33:44 2009: DEBUG: Radius::AuthLDAP2 looks for match
with zod [zod]
Mon Dec 14 17:33:44 2009: DEBUG: Radius::AuthLDAP2 ACCEPT: : zod [zod]
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy LDAP2 result: ACCEPT,
Mon Dec 14 17:33:44 2009: DEBUG: Access accepted for zod
Mon Dec 14 17:33:44 2009: DEBUG: Returned TTLS tunnelled Diameter
Packet dump:
Code: Access-Accept
Identifier: UNDEF
Authentic:
<211><175>9<2><199><221>u<205>_<131><225><237><216>p<152><199>
Attributes:
Service-Type = Framed-User
Framed-Protocol = PPP
TUNNEL_TYPE = VLAN
TUNNEL_MEDIUM_TYPE = 802
TUNNEL_GROUP_ID = 28
Mon Dec 14 17:33:44 2009: DEBUG: EAP result: 0, EAP TTLS inner
authentication redispatched to a Handler
Mon Dec 14 17:33:44 2009: DEBUG: AuthBy FILE result: ACCEPT, EAP TTLS
inner authentication redispatched to a Handler
Mon Dec 14 17:33:44 2009: DEBUG: Access accepted for zod
Mon Dec 14 17:33:44 2009: WARNING: No such attribute TUNNEL_TYPE
Mon Dec 14 17:33:44 2009: WARNING: No such attribute TUNNEL_MEDIUM_TYPE
Mon Dec 14 17:33:44 2009: WARNING: No such attribute TUNNEL_GROUP_ID
Mon Dec 14 17:33:44 2009: DEBUG: Packet dump:
*** Sending to 10.10.19.35 port 32769 ....
Code: Access-Accept
Identifier: 197
Authentic: H<164>)<168>X<9><247>z<166><189><218>\<10><21><25>Q
Attributes:
Service-Type = Framed-User
Framed-Protocol = PPP
TUNNEL_TYPE = VLAN
TUNNEL_MEDIUM_TYPE = 802
TUNNEL_GROUP_ID = 28
MS-MPPE-Send-Key = <201>?
<
22
>
<
214
>
VJ3M
<
240
>
<
158
>
<
189
><145><202>X<174><244><8><218>H<170><214><138><12><202><9><135>(<131>
%<190>(<191>
MS-MPPE-Recv-Key =
<
161
>
<
26
>
<
168
>
<
213
>
w
<
241
>o<188><198><209>T<158><229>y<212>ig<190>f<136><<<199>,BwM~<181>w<215>s
EAP-Message = <3><7><0><4>
Message-Authenticator =
<0><0><0><0><0><0><0><0><0><0><0><0><0><0><0><0>
On Dec 14, 2009, at 4:07 PM, Hugh Irvine wrote:
>
> Hello Zod -
>
> I replied to your prevous email on this topic - I will send you
> another copy now.
>
> Alternatively to manipulate the inner username you can use the
> "EAPAnonymous ...." parameter.
>
>
> <Handler Called-Station-Id = /xyz/>
> <AuthBy FILE>
> .....
> EAPAnonymous %0 at MYREALM
> </AuthBy>
> </Handler>
>
> <Handler TunneledByTTLS=1, Realm=MYREALM>
> </Handler>
>
> <Handler TunneledByTTLS=1, Realm=OTHER>
> </Handler>
>
>
> See section 5.18.24 in the Radiator 4.5.1 reference manual ("doc/
> ref.pdf").
>
> See also the example in "goodies/eap_multi.cfg".
>
> regards
>
> Hugh
>
>
> On 15 Dec 2009, at 06:25, Zod Mansour wrote:
>
>> Is it possible to set Realms in the outer Handler?
>>
>> <Handler Called-Station-Id = /xyz/>
>> <<<<<set realm here>>>>> Realm = MYREALM
>> <AuthBy FILE>
>> </AuthBy>
>> </Handler>
>>
>> <Handler TunneledByTTLS=1, Realm=MYREALM>
>> </Handler>
>>
>> <Handler TunneledByTTLS=1, Realm=OTHER>
>> </Handler>
>>
>> I tried rewriting the username but that just sets the username and
>> not
>> the realm.
>> The only way I was able to set realm was in the client's computer.
>>
>>
>>
>> _______________________________________________
>> radiator mailing list
>> radiator at open.com.au
>> http://www.open.com.au/mailman/listinfo/radiator
>
>
>
> NB:
>
> Have you read the reference manual ("doc/ref.html")?
> Have you searched the mailing list archive (www.open.com.au/archives/radiator)?
> Have you had a quick look on Google (www.google.com)?
> Have you included a copy of your configuration file (no secrets),
> together with a trace 4 debug showing what is happening?
>
> --
> Radiator: the most portable, flexible and configurable RADIUS server
> anywhere. Available on *NIX, *BSD, Windows, MacOS X.
> Includes support for reliable RADIUS transport (RadSec),
> and DIAMETER translation agent.
> -
> Nets: internetwork inventory and management - graphical, extensible,
> flexible with hardware, software, platform and database independence.
> -
> CATool: Private Certificate Authority for Unix and Unix-like systems.
>
>
>
More information about the radiator
mailing list