[RADIATOR] EAP PEAP Challenges

Hugh Irvine hugh at open.com.au
Tue Apr 12 19:42:43 CDT 2016


Hello Roberto -

Welcome to the wonderful world of EAP.

Note that EAP is essentially a stateful encrypted TCP tunnel, over RADIUS, over UDP, hence the large number of packets back and forth for a single authentication.

I wonder what substance they were abusing?

regards

Hugh


> On 12 Apr 2016, at 23:58, A.L.M.Buxey at lboro.ac.uk wrote:
> 
> Hi,
>>   Are all the challenges independent of each other? I can't find anything in
>>   the debug log that ties the incoming packets together.
> 
> all seperate UDP packets - but with a known state - the RADIUS
> server recognises the conversation (up to 256 from each NAS usually....)
> 
> with latest patchset for 4.16 you can see more details to help track
> a conversation in debug
> 
> alan
> _______________________________________________
> radiator mailing list
> radiator at open.com.au
> http://www.open.com.au/mailman/listinfo/radiator


--

Hugh Irvine
hugh at open.com.au

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP, TNC, WiMAX, RSA, Vasco, Yubikey, MOTP, HOTP, TOTP,
DIAMETER, SIM, etc. 
Full source on Unix, Linux, Windows, MacOSX, Solaris, VMS, NetWare etc.



More information about the radiator mailing list