In SSL Handshake Phase
In SSL Accept mode
eaptls_process returned 13
rlm_eap_peap: EAPTLS_HANDLED
modcall[authenticate]: module "eap" returns handled for request 3
modcall: leaving group authenticate (returns handled) for request 3
Sending Access-Challenge of id 138 to 172.24.26.144 port 1025
Framed-IP-Address = 255.255.255.254
Framed-MTU = 576
Service-Type = Framed-User
EAP-Message = 0x018102a61900160301004a02000046030144e9e42f394e24 13c7c8ab7e3c12b11c9d8e91b767873c1c4805eaad77a0a0ab 20ccf28ff57696edda2bc647467d899b9df62b5d701c356f83 06b66750014f78b400040016030102430b00023f00023c0002 39308202353082019ea003020102020101300d06092a864886 f70d01010405003054310b3009060355040613024652310e30 0c060355040813055061726973310f300d0603550407130656 656c697a793110300e060355040a1307416c636174656c3112 3010060355040313096c6f63616c686f7374301e170d303630 3831373131343230355a170d3037303831373131343230355a 3054310b
EAP-Message = 0x3009060355040613024652310e300c060355040813055061 726973310f300d0603550407130656656c697a793110300e06 0355040a1307416c636174656c31123010060355040313096c 6f63616c686f737430819f300d06092a864886f70d01010105 0003818d0030818902818100c0b68a2064159d8dc8b4067746 ee82384bc71ac4efbf1132ffe1afabf49a207e3e3d553a6e27 b1a7c3875c8892c8ebd91a09fd7709e354168e9a4a71e38a93 6c82e2b857eb5176eae445966adf28ce8f3a31c987aced4d77 4a9957de5b26bdc300fcee71c0f7139845ebd253c6f27945bb e70fd3501563e231ba1d52419508ed0203010001a317301530 13060355
EAP-Message = 0x1d25040c300a06082b06010505070301300d06092a864886 f70d0101040500038181001a8366350e04eb86535cbf2b3c4a 13c32f5c4455310aad4e23480d695cab9ea9dbdeed10885c1c 483beb583e19adaf4e663bc41fe81c3a00a83dbcb86dbae0dd 25653c2f2eea11f510cbc359e83589e6236a8456ae91bb0631 c30c87172933e625ff3e2571d8781b5a3351179d0ebcd2955b 235513684fcdcd288386eb612a8316030100040e000000
Message-Authenticator = 0x00000000000000000000000000000000
State = 0xc225f88e9ec8bd211052dcde981691af
Finished request 3
Going to the next request
Waking up in 6 seconds...
--- Walking the entire request list ---
Cleaning up request 2 ID 19 with timestamp 44e9e42f
Cleaning up request 3 ID 138 with timestamp 44e9e42f
Nothing to do. Sleeping until we see a request.
rad_recv: Access-Request packet from host 172.24.26.144:1025, id=137, length=249
Acct-Session-Id = "67671438"
NAS-Port = 1
NAS-Port-Type = Wireless-802.11
User-Name = "alcatel"
Calling-Station-Id = "00-0E-35-89-71-E0"
Called-Station-Id = "00-03-52-01-84-7D"
EAP-Message = 0x0280005019800000004616030100410100003d030144e9e5 4ee8bf5c390cecf9fa8b659b32ac0a7eb623919876fa26dd9d c220d75800001600040005000a000900640062000300060013 001200630100
State = 0x091ad12235d4b0c91ca834c803d04ee0
NAS-Identifier = "R014-00755"
NAS-IP-Address = 172.24.26.144
Framed-MTU = 1496
Connect-Info = "IEEE802.1X"
Service-Type = Framed-User
Message-Authenticator = 0x1fce69eae2a6a28432b4b723cc33db33
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 4
modcall[authorize]: module "preprocess" returns ok for request 4
radius_xlat: '/usr/local/var/log/radius/radacct/172.24.26.144/auth-detail-20060821'
rlm_detail: /usr/local/var/log/radius/radacct/%{Client-IP-Address}/auth-detail-%Y%m%d expands to /usr/local/var/log/radius/radacct/172.24.26.144/auth-detail-20060821
modcall[authorize]: module "auth_log" returns ok for request 4
modcall[authorize]: module "mschap" returns noop for request 4
rlm_realm: No '@' in User-Name = "alcatel", looking up realm NULL
rlm_realm: No such realm "NULL"
modcall[authorize]: module "suffix" returns noop for request 4
rlm_eap: EAP packet type response id 128 length 80
rlm_eap: No EAP Start, assuming it's an on-going EAP conversation
modcall[authorize]: module "eap" returns updated for request 4
users: Matched entry DEFAULT at line 152
users: Matched entry DEFAULT at line 171
modcall[authorize]: module "files" returns ok for request 4
modcall: leaving group authorize (returns updated) for request 4
rad_check_password: Found Auth-Type EAP
auth: type "EAP"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 4
rlm_eap: Request not found in the list
rlm_eap: Either EAP-request timed out OR EAP-response to an unknown EAP-request
rlm_eap: Failed in handler
modcall[authenticate]: module "eap" returns invalid for request 4
modcall: leaving group authenticate (returns invalid) for request 4
auth: Failed to validate the user.
Delaying request 4 for 1 seconds
Finished request 4
Going to the next request
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Sending Access-Reject of id 137 to 172.24.26.144 port 1025
Waking up in 4 seconds...
--- Walking the entire request list ---
Cleaning up request 4 ID 137 with timestamp 44e9e439
Nothing to do. Sleeping until we see a request.
rad_recv: Access-Request packet from host 172.24.26.144:1025, id=232, length=249
Acct-Session-Id = "68cacd88"
NAS-Port = 1
NAS-Port-Type = Wireless-802.11
User-Name = "alcatel"
Calling-Station-Id = "00-0E-35-89-71-E0"
Called-Station-Id = "00-03-52-01-84-7D"
EAP-Message = 0x0280005019800000004616030100410100003d030144e9e5 4ee8bf5c390cecf9fa8b659b32ac0a7eb623919876fa26dd9d c220d75800001600040005000a000900640062000300060013 001200630100
State = 0x091ad12235d4b0c91ca834c803d04ee0
NAS-Identifier = "R014-00755"
NAS-IP-Address = 172.24.26.144
Framed-MTU = 1496
Connect-Info = "IEEE802.1X"
Service-Type = Framed-User
Message-Authenticator = 0xf5067019655051edd6e8fe1ab2027d1b
Processing the authorize section of radiusd.conf
modcall: entering group authorize for request 5
modcall[authorize]: module "preprocess" returns ok for request 5
radius_xlat: '/usr/local/var/log/radius/radacct/172.24.26.144/auth-detail-20060821'
rlm_detail: /usr/local/var/log/radius/radacct/%{Client-IP-Address}/auth-detail-%Y%m%d expands to /usr/local/var/log/radius/radacct/172.24.26.144/auth-detail-20060821
modcall[authorize]: module "auth_log" returns ok for request 5
modcall[authorize]: module "mschap" returns noop for request 5
rlm_realm: No '@' in User-Name = "alcatel", looking up realm NULL
rlm_realm: No such realm "NULL"
modcall[authorize]: module "suffix" returns noop for request 5
rlm_eap: EAP packet type response id 128 length 80
rlm_eap: No EAP Start, assuming it's an on-going EAP conversation
modcall[authorize]: module "eap" returns updated for request 5
users: Matched entry DEFAULT at line 152
users: Matched entry DEFAULT at line 171
modcall[authorize]: module "files" returns ok for request 5
modcall: leaving group authorize (returns updated) for request 5
rad_check_password: Found Auth-Type EAP
auth: type "EAP"
Processing the authenticate section of radiusd.conf
modcall: entering group authenticate for request 5
rlm_eap: Request not found in the list
rlm_eap: Either EAP-request timed out OR EAP-response to an unknown EAP-request
rlm_eap: Failed in handler
modcall[authenticate]: module "eap" returns invalid for request 5
modcall: leaving group authenticate (returns invalid) for request 5
auth: Failed to validate the user.
Delaying request 5 for 1 seconds
Finished request 5
Going to the next request
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Waking up in 1 seconds...
--- Walking the entire request list ---
Sending Access-Reject of id 232 to 172.24.26.144 port 1025
Waking up in 4 seconds...
--- Walking the entire request list ---
Cleaning up request 5 ID 232 with timestamp 44e9e443
Nothing to do. Sleeping until we see a request.
The following is the radiusd.conf
##
## radiusd.conf -- FreeRADIUS server configuration file.
##
##
FreeRADIUS -- building the perfect RADIUS server
## $Id: radiusd.conf.in,v 1.188.2.4.2.11 2006/04/20 18:40:29 aland Exp $
##
# The location of other config files and
# logfiles are declared in this file
#
# Also general configuration for modules can be done
# in this file, it is exported through the API to
# modules that ask for it.
#
# The configuration variables defined here are of the form ${foo}
# They are local to this file, and do not change from request to
# request.
#
# The per-request variables are of the form %{Attribute-Name}, and
# are taken from the values of the attribute in the incoming
# request. See 'doc/variables.txt' for more information.
prefix = /usr/local
exec_prefix = ${prefix}
sysconfdir = ${prefix}/etc
localstatedir = ${prefix}/var
sbindir = ${exec_prefix}/sbin
logdir = ${localstatedir}/log/radius
raddbdir = ${sysconfdir}/raddb