Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=174, length=168
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x0209000a017374657665
- Message-Authenticator = 0x7dc21eb0629b206dcce55587b0b8ff44
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 9 length 10
- [eap] No EAP Start, assuming it's an on-going EAP conversation
- ++[eap] returns updated
- ++[files] returns noop
- ++[expiration] returns noop
- ++[logintime] returns noop
- [pap] Failed to decode Password-With-Header = "stevesecret"
- [pap] WARNING: Auth-Type already set. Not setting to PAP
- ++[pap] returns noop
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] EAP Identity
- [eap] processing type md5
- rlm_eap_md5: Issuing Challenge
- ++[eap] returns handled
- Sending Access-Challenge of id 174 to 192.168.0.14 port 32779
- EAP-Message = 0x010a0016041064d5ce5385c2f22bbb6772c9f5368c9b
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83f92e7e990be09e468948476c
- Finished request 164.
- Going to the next request
- Waking up in 4.9 seconds.
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=175, length=182
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x020a00060319
- State = 0xf9247a83f92e7e990be09e468948476c
- Message-Authenticator = 0xa3c00727933daabdbe8793d54c6a4758
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 10 length 6
- [eap] No EAP Start, assuming it's an on-going EAP conversation
- ++[eap] returns updated
- ++[files] returns noop
- ++[expiration] returns noop
- ++[logintime] returns noop
- [pap] Failed to decode Password-With-Header = "stevesecret"
- [pap] WARNING: Auth-Type already set. Not setting to PAP
- ++[pap] returns noop
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] Request found, released from the list
- [eap] EAP NAK
- [eap] EAP-NAK asked for EAP-Type/peap
- [eap] processing type tls
- [tls] Initiate
- [tls] Start returned 1
- ++[eap] returns handled
- Sending Access-Challenge of id 175 to 192.168.0.14 port 32779
- EAP-Message = 0x010b00061920
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83f82f63990be09e468948476c
- Finished request 165.
- Going to the next request
- Waking up in 4.6 seconds.
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=176, length=263
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x020b005719800000004d16030100480100004403014fdb44db2090aa55395f2412e9fe4265bfd698a4b39c6aef99f9f8d5ee7d073f0000160000
- State = 0xf9247a83f82f63990be09e468948476c
- Message-Authenticator = 0xdb7f58c4bd701afd30633640af2d68df
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 11 length 87
- [eap] Continuing tunnel setup.
- ++[eap] returns ok
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] Request found, released from the list
- [eap] EAP/peap
- [eap] processing type peap
- [peap] processing EAP-TLS
- TLS Length 77
- [peap] Length Included
- [peap] eaptls_verify returned 11
- [peap] (other): before/accept initialization
- [peap] TLS_accept: before/accept initialization
- [peap] <<< TLS 1.0 Handshake [length 0048], ClientHello
- [peap] TLS_accept: SSLv3 read client hello A
- [peap] >>> TLS 1.0 Handshake [length 002a], ServerHello
- [peap] TLS_accept: SSLv3 write server hello A
- [peap] >>> TLS 1.0 Handshake [length 085e], Certificate
- [peap] TLS_accept: SSLv3 write certificate A
- [peap] >>> TLS 1.0 Handshake [length 0004], ServerHelloDone
- [peap] TLS_accept: SSLv3 write server done A
- [peap] TLS_accept: SSLv3 flush data
- [peap] TLS_accept: Need to read more data: SSLv3 read client certificate A
- In SSL Handshake Phase
- In SSL Accept mode
- [peap] eaptls_process returned 13
- [peap] EAPTLS_HANDLED
- ++[eap] returns handled
- Sending Access-Challenge of id 176 to 192.168.0.14 port 32779
- EAP-Message = 0x010c040019c00000089b160301002a0200002603014fd797d54f8f12fbeb590a6b08fa1e3e1ac50a8142aeca200b2a2866f9867de90000040019
- EAP-Message = 0x301e170d3132303431303037313731365a170d3134303431303037313731365a307c310b3009060355040613024652310f300d06035504081309
- EAP-Message = 0x13c88d95481271505b5dc1c5233845f92d27a86437257fc232342a0f9906cb0711675e4efb58f24b96ce1d46c78a766291d6ac815ca31ef5c008
- EAP-Message = 0x067bc8f2cdd77b7a8be176de70b90c83e515e2bf160c1bbc0099b26481faf1b83097095de9cb49ed9a9b6e72aec8a12ee5bc6c01517a0e7e1554
- EAP-Message = 0xa73082038fa0030201020209
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83fb2863990be09e468948476c
- Finished request 166.
- Going to the next request
- Waking up in 4.3 seconds.
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=177, length=182
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x020c00061900
- State = 0xf9247a83fb2863990be09e468948476c
- Message-Authenticator = 0x7a897ae641bab6b5b48c36332dda0c70
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 12 length 6
- [eap] Continuing tunnel setup.
- ++[eap] returns ok
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] Request found, released from the list
- [eap] EAP/peap
- [eap] processing type peap
- [peap] processing EAP-TLS
- [peap] Received TLS ACK
- [peap] ACK handshake fragment handler
- [peap] eaptls_verify returned 1
- [peap] eaptls_process returned 13
- [peap] EAPTLS_HANDLED
- ++[eap] returns handled
- Sending Access-Challenge of id 177 to 192.168.0.14 port 32779
- EAP-Message = 0x010d03fc194000d8e326f43defcfa0300d06092a864886f70d0101050500308193310b3009060355040613024652310f300d0603550408130654
- EAP-Message = 0x071309536f6d65776865726531153013060355040a130c4578616d706c6520496e632e3120301e06092a864886f70d010901161161646d696e47
- EAP-Message = 0x8503de2b49e9fecda441afb0fb9d5f010c65bdd372cfb25eb428653872864c0a604be24af88f1f8c98521be3566ae3985fc9f320bb761a687fc4
- EAP-Message = 0x0813065261646975733112301006035504071309536f6d65776865726531153013060355040a130c4578616d706c6520496e632e3120301e0606
- EAP-Message = 0x22e286ab789f4f44
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83fa2963990be09e468948476c
- Finished request 167.
- Going to the next request
- Waking up in 3.9 seconds.
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=178, length=182
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x020d00061900
- State = 0xf9247a83fa2963990be09e468948476c
- Message-Authenticator = 0x15bda512b8f348ec0fda47f1dff12780
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 13 length 6
- [eap] Continuing tunnel setup.
- ++[eap] returns ok
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] Request found, released from the list
- [eap] EAP/peap
- [eap] processing type peap
- [peap] processing EAP-TLS
- [peap] Received TLS ACK
- [peap] ACK handshake fragment handler
- [peap] eaptls_verify returned 1
- [peap] eaptls_process returned 13
- [peap] EAPTLS_HANDLED
- ++[eap] returns handled
- Sending Access-Challenge of id 178 to 192.168.0.14 port 32779
- EAP-Message = 0x010e00b519005121aace8a6a362647daeb3deee0bd2f7cf2d33d3e799f00fe4d2a6f8380e826624b1cb16a1b252d74009b0a0ed7db37eafdf640
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83fd2a63990be09e468948476c
- Finished request 168.
- Going to the next request
- Waking up in 3.6 seconds.
- rad_recv: Access-Request packet from host 192.168.0.14 port 32779, id=179, length=182
- User-Name = "steve"
- NAS-IP-Address = 192.168.0.14
- NAS-Identifier = "hello"
- NAS-Port = 0
- Called-Station-Id = "00-26-AD-01-20-7D:Prateek"
- Calling-Station-Id = "00-03-7F-0B-44-48"
- Framed-MTU = 1400
- NAS-Port-Type = Wireless-802.11
- Connect-Info = "CONNECT 0Mbps 802.11b"
- EAP-Message = 0x020e00061900
- State = 0xf9247a83fd2a63990be09e468948476c
- Message-Authenticator = 0x8ef672d2d05f6e21667e2dc865ed70e2
- # Executing section authorize from file /etc/raddb/sites-enabled/default
- +- entering group authorize {...}
- ++[preprocess] returns ok
- ++[chap] returns noop
- ++[mschap] returns noop
- ++[digest] returns noop
- [suffix] No '@' in User-Name = "steve", looking up realm NULL
- [suffix] No such realm "NULL"
- ++[suffix] returns noop
- [ldap] performing user authorization for steve
- [ldap] expand: %{Stripped-User-Name} ->
- [ldap] ... expanding second conditional
- [ldap] expand: %{User-Name} -> steve
- [ldap] expand: (uid=%{%{Stripped-User-Name}:-%{User-Name}}) -> (uid=steve)
- [ldap] expand: dc=prateek,dc=com -> dc=prateek,dc=com
- [ldap] ldap_get_conn: Checking Id: 0
- [ldap] ldap_get_conn: Got Id: 0
- [ldap] performing search in dc=prateek,dc=com, with filter (uid=steve)
- [ldap] looking for check items in directory...
- [ldap] userPassword -> Password-With-Header == "stevesecret"
- [ldap] looking for reply items in directory...
- [ldap] user steve authorized to use remote access
- [ldap] ldap_release_conn: Release Id: 0
- ++[ldap] returns ok
- [eap] EAP packet type response id 14 length 6
- [eap] Continuing tunnel setup.
- ++[eap] returns ok
- Found Auth-Type = EAP
- # Executing group from file /etc/raddb/sites-enabled/default
- +- entering group authenticate {...}
- [eap] Request found, released from the list
- [eap] EAP/peap
- [eap] processing type peap
- [peap] processing EAP-TLS
- [peap] Received TLS ACK
- [peap] ACK handshake fragment handler
- [peap] eaptls_verify returned 1
- [peap] eaptls_process returned 13
- [peap] EAPTLS_HANDLED
- ++[eap] returns handled
- Sending Access-Challenge of id 179 to 192.168.0.14 port 32779
- EAP-Message = 0x010f00061900
- Message-Authenticator = 0x00000000000000000000000000000000
- State = 0xf9247a83fc2b63990be09e468948476c
- Finished request 169.
- Going to the next request
- Waking up in 3.6 seconds.
- Cleaning up request 164 ID 174 with timestamp +392841345
- Waking up in 0.3 seconds.
- Cleaning up request 165 ID 175 with timestamp +392841345
- Cleaning up request 166 ID 176 with timestamp +392841346
- Waking up in 0.6 seconds.
- Cleaning up request 167 ID 177 with timestamp +392841346
- Waking up in 0.3 seconds.
- Cleaning up request 168 ID 178 with timestamp +392841346
- Cleaning up request 169 ID 179 with timestamp +392841347
- WARNING: !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
- WARNING: !! EAP session for state 0xf9247a83fc2b6399 did not finish!
- WARNING: !! Please read http://wiki.freeradius.org/Certificate_Compatibility
- WARNING: !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
- Ready to process requests.
Add Comment
Please, Sign In to add comment