[RADIATOR] Radiator 4.5 - crash when handling Tacacs+ (with remote server timeout?)

Hugh Irvine hugh at open.com.au
Wed Nov 11 15:12:56 CST 2009


Hello Andrew -

Can you please configure restartWrapper to send an email with the Perl errors?

And can you forward me those errors?

thanks and regards

Hugh


On 12 Nov 2009, at 03:17, Andrew D. Clark wrote:

> Hi,
> 
> I'm seeing a crash in Radiator 4.5  I think it occurs when processing TACACS+ 
> requests when the remote TACACS+ server not responding, but hard to say 
> because nothing is logged.  RestartWrapper is restarting Radiator after it 
> exits.
> 
> Wed Nov 11 03:05:19 2009: DEBUG: New TacacsplusConnection created for 
> XXX:54836
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection request 192, 1, 1, 0, 
> 2105076526, 21
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection Authentication START 1, 
> 1, 1 for , Virtual00, adc2
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection Authentication REPLY 4, 
> 0, Username: ,
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection request 192, 1, 3, 0, 
> 2105076526, 14
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection Authentication CONTINUE 
> 0, conftocvs,
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection Authentication REPLY 5, 
> 1, Password: ,
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection request 192, 1, 5, 0, 
> 2105076526, 13
> Wed Nov 11 03:05:19 2009: DEBUG: TacacsplusConnection Authentication CONTINUE 
> 0, CENSORED
> Wed Nov 11 03:05:19 2009: DEBUG: TACACSPLUS derived Radius request packet 
> dump:
> Code:       Access-Request
> Identifier: UNDEF
> Authentic:  <226><20>pg<1><253>./1<227>w<177><136><164>*<179>
> Attributes:
>        NAS-IP-Address = XXX
>        NAS-Port-Id = "Virtual00"
>        Calling-Station-Id = "adc2"
>        Service-Type = Login-User
>        NAS-Identifier = "TACACS"
>        User-Name = "CENSORED"
>        User-Password = **obscured**
>        OSC-Version-Identifier = "192"
> 
> Wed Nov 11 03:05:19 2009: DEBUG: Hook tacacs_client_identifier called
> Wed Nov 11 03:05:19 2009: DEBUG: Hook tacacs_client_identifier searching for 
> client <XXX>
> Wed Nov 11 03:05:19 2009: DEBUG: Hook tacacs_client_identifier got client ident 
> <testing>
> Wed Nov 11 03:05:19 2009: DEBUG: Handling request with Handler 'NAS-
> Identifier=TACACS'
> Wed Nov 11 03:05:19 2009: DEBUG: session_db_mysql Deleting session for 
> CENSORED, XXX,
> Wed Nov 11 03:05:19 2009: DEBUG: do query is: 'delete from RADONLINE where 
> ACCTSESSIONID=''':
> Wed Nov 11 03:05:19 2009: DEBUG: Handling with TACACSPLUS XXX
> # DIES HERE
> Wed Nov 11 03:05:50 2009: NOTICE: Server started: Radiator 4.5 on XXX
> 
> -- 
> Andrew D. Clark
> Network Operations Engineer
> University of Minnesota, Networking/Telecom Services
> 2218 University Ave SE
> Minneapolis, MN 55414-3029
> Phone: 612-626-4880
> _______________________________________________
> radiator mailing list
> radiator at open.com.au
> http://www.open.com.au/mailman/listinfo/radiator



NB: 

Have you read the reference manual ("doc/ref.html")?
Have you searched the mailing list archive (www.open.com.au/archives/radiator)?
Have you had a quick look on Google (www.google.com)?
Have you included a copy of your configuration file (no secrets), 
together with a trace 4 debug showing what is happening?
Have you checked the RadiusExpert wiki:
http://www.open.com.au/wiki/index.php/Main_Page

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows, MacOS X.
Includes support for reliable RADIUS transport (RadSec),
and DIAMETER translation agent.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
-
CATool: Private Certificate Authority for Unix and Unix-like systems.




More information about the radiator mailing list