Powered by Jitbit Forum free trial version.
home recent topics recent posts search faq  

TekRADIUS Forum



register | lost password   open id

Messages in this topic - RSS

Home » Installation » Computer can not access AP

Installation Issues
18.11.2009 23:36:12

jasonw
jasonw
Posts: 5
Hi Admin,
I'm having a problem getting TekRADIUS to respond to an access request from a LinkSys router

using WPA2-Enterprise mode with AES encryption. I am new to

RADIUS server technology.

SETUP:
I've installed TekRADIUS 3.4.0.0 and Microsoft SQL Server Express Edition 2005 on my Windows XP

SP3 computer. I have a LinkSys WRT54G (***DDWRT- FIRMWARE***) router as the client (In Tekradius

manager, I can not find brand name linksys, I add "client " NAS =172.16.0.54. SECRET =123456

VENDOR=TEKRADIUS, ENABLE =YES ).

The router is connected to the computer with an ethernet link. I'm trying to test out TekRADIUS

by authenticating a wireless connection to TekRADIUS from the computer (using a wireless adapter

with a different IP address). The LinkSys is set up for WPA2-Enterprise, AES, RADIUS port = 1812,

and a shared key (i.e., 123456).

I've set up a certificate using TekCERT (both Tekradius and Tekcert were installed on the same

desktop computer, windowsXP). I used Tekcert created a certificate "yuef.cer".

On TekRADIUS, I have set up the LinkSys router as a client with 172.16.0.54 and a secret =

LinkSys's shared key(123456).
I've set up a user with a name, User-Password (type = Check) = password, TekRADIUS-Status (type =

Check) = Enabled, Authentication-Method (Type = Check) =

MS-CHAP-V2, TLS-Certificate (type = Check) = "yuef.cer" I created.

The TekRADIUS server starts up without any errors.

On the Windows XP side( laptop windowsXP with intel wireless 3945), for the wireless network,

After import the "yuef.cer", I set up the Network Authentication = WPA2, Data encryption = AES.

For Authentication, I set EAP type = Protected EAP (PEAP). Under properties, I checked Validate

server certificate. I only check a user's certificate (for example "yuef.cer" that I created on

the server side).
I selected Secured password (EAP_MSCHAP v2), unser properties, unchecked "automatically use my

windows logon .......".



When I try to connect to the wireless network from the Windows XP Laptop, I see the Validating

identity message and a prompt asking to select a certificate or other credentials for connection to the network. I keyed in username and password.

No Lucky.
0 permalink
19.11.2009 10:58:21

Admin
Admin
Administrator
Posts: 1684
Hi,

Please set vendor type from TekRADIUS to ietf for RADIUS client entry. Adding Authentication-Method to user or group
profile is optional but if you add it set its value to PEAP. Please test with this changes

Best regards,

Yasin KAPLAN
0 permalink
19.11.2009 19:38:12

jasonw
jasonw
Posts: 5
sorry a little bit mistake on above description. Actually, I export root certification (named as USER) and added it into clients (laptop ). Should I need to add yue.cer in to clients (laptop).
Follow your advise, I set vendor type from TekRADIUS to ietf for RADIUS client entry. I change user's "Authentication-Method " to PEAP, I did not add any congiguration on group side. Should I add configuration on group side.

log information:
11/19/2009 8:14:10 AM - TekRADIUS Service 3.4.0.0 is being started.

11/19/2009 8:14:10 AM - TekRADIUS Service is listening on : 172.16.4.187 (2 client(s))

RadAuth req. from : 172.16.0.54 - 11/19/2009 8:15:51 AM
Size : 121 / 121
Identifier : 0
Attributes :

11/19/2009 8:15:51 AM - Starting PEAP (A).

Calling-Station-Id = 001b772cef78
NAS-Port-Type = 19
Called-Station-Id = 0021298f6139
User-Name = yuef
NAS-IP-Address = 172.16.0.54
NAS-Identifier = 0021298f6139
NAS-Port = 59
Framed-MTU = 1400

11/19/2009 8:15:51 AM - User configured for PEAP authentication; starting PEAP session.

11/19/2009 8:15:51 AM - Check items control - Start.

11/19/2009 8:15:51 AM - Check items control - Stop.

11/19/2009 8:15:51 AM - Fetching Success-Reply items - Start.

11/19/2009 8:15:51 AM - Fetching Success-Reply items - Stop.

11/19/2009 8:15:51 AM - Generating Reply Packet - Start.

11/19/2009 8:15:51 AM - Generating Reply Packet - Stop.

11/19/2009 8:15:51 AM - Authorization successfull for user yuef

RadAuth reply to : 172.16.0.54 - 11/19/2009 8:15:51 AM
Size : 50
Identifier : 0
Attributes :

User-Name = yuef

11/19/2009 8:16:25 AM - Session timer expired for the session : 28fb22aff813156e4d32eb60fffa6f9f

11/19/2009 8:16:25 AM - Session timer expired for the session : c2e1f1b7f0c2a8a6a169f21d385d1640
0 permalink
20.11.2009 10:59:11

Admin
Admin
Administrator
Posts: 1684
Hi,

Unfortunately you've made a common mistake. Please uncheck Settings / Service Parameters / Authorization Only option.
By the way, why have you set this option?

Best regards,

Yasin KAPLAN
0 permalink
21.11.2009 09:19:24

jasonw
jasonw
Posts: 5
Hi Admin,

Appreciate for your help. It seems work now. I am wondering, does Tekradius support black berry? If it does, how to set it up on Takradius manager side and Black berry side, because on black berry side, I can not find the certifications "USER"(root certification) in black berry.

Thank U.

Jason
0 permalink
21.11.2009 10:40:17

Admin
Admin
Administrator
Posts: 1684
Dear Jason,

Is's a little tricky but you can load public server certificate to Balck Berry. Please see:
Import a new SSL certificate for the BlackBerry Administration Service and BlackBerry Web Desktop Manager.

Best regards,

Yasin KAPLAN
0 permalink
30.06.2010 16:09:56

nl17185
nl17185
Posts: 13
Hello All,

I'm having the same issue, I want to use tekradius to authenticate a wireless client (computer) with windows-domain credentials.
I have a cisco access-point configured for peap, client computer is configured for wpa2-aes and peap. I want to enter the domain username and password credentials when I am connecting to the wireless network.

What attributes needs to be configured for this to work?
- Authentication-Method (Type = Check) = MS-CHAP-V2 ?
- TLS-Certificate (type = Check) = "[file_name.cer]" ?

Thanks for your response.
regards Marcel
0 permalink
30.06.2010 18:54:50

Admin
Admin
Administrator
Posts: 1684
Hi,

You need to have following attributes in your use profile;

User-Password (Check)
TLS-Password (Check)

Best regards,

Yasin KAPLAN
0 permalink
30.06.2010 19:29:25

nl17185
nl17185
Posts: 13
Hello Yasin,

User-Password (Check), but then it is fixed, what when the user changes his password on the domain?
TLS-Password (Check), I can't find this attribute, do you mean: TLS-Certificate (Check) ?, I have this one configured.

Thanks
0 permalink
01.07.2010 11:19:31

Admin
Admin
Administrator
Posts: 1684
You can not use PEAP authentication with Windows or Active Directory accounts. You must have local user profiles in TekRADIUS database.
TekRADIUS can not access clear text passwords of Windows or Active Directory accounts.
0 permalink
03.07.2010 01:56:54

nhetho
nhetho
Posts: 5
Hello Yasin, I'm new on this and have a similar problem.
When I try to connect to the wireless network from the Windows XP Laptop, I see the Validating identity message and a prompt asking to select a certificate or other credentials for connection to the network. I used my username and password from the configuration and didn’t work.

I´ve tried TekRADIUS with diferent computers, on Windows 7 and Windows XP, using Microsoft SQL Server 2008 x64 and x86 respectivly, with correct configuration of SQL Server. I'm still having the same problem.


My configurations:
Settings Tab:
SQL Connection

SQL Server: 192.168.1.104
Timeout: 30
Usename: sa
Password: 12345678
Use Default Authentificatione Key: Check
...
Service Parameters

Listen IP Address: 192.168.1.104
Startup: Manual
Logging: None
Authorization Only: Uncheck
Failure Count: 0
Authentication Port: 1812
Secure Shutdown: Uncheck
PEAP Inner Auth. Method: EAP-MS-CHAP-V2
Keep Domain Name: Uncheck
Accounting Enable: check
Accounting Port: 1813

Clients Tab:
NAS: 127.0.0.1 Secret: test Vendor: ietf Enabled: Yes
NAS: 192.168.1.1 Secret: 12345678 Vendor: ietf Enabled: Yes
Router WRT160N v3.0 cofigured with WPA2 Enterprise, Server Radius: 192.168.1.104, Pre-Share Key: 12345678

Groups Tab:
Group Name: Default
Authentication Method (check) PEAP
TLS-Certificate (check) HOME
*HOME already install on the server and client

Users Tab:
Username: nhetho Group: Default
User-password (check) 12345678
TLS-Certificate (check) HOME
0 permalink
03.07.2010 09:26:34

Admin
Admin
Administrator
Posts: 1684
Hi,

Can you set logging level to debug and send me TekRADIUS.log entries for a sample session?

Best regards,

Yasin KAPLAN
0 permalink
03.07.2010 19:18:14

nhetho
nhetho
Posts: 5
Hi, thanks for the quick answer.
I´ve already set logging to debug, the TEKRADIUS log file only have this:

03/07/2010 11:10:43 a.m. - TekRADIUS Service 3.6.0.0 is being started (Microsoft Windows NT 5.1.2600 Service Pack 3).
03/07/2010 11:10:47 a.m. - TekRADIUS Service is listening on : 192.168.1.104 (2 client(s))
0 permalink
03.07.2010 19:27:28

nhetho
nhetho
Posts: 5
By the way, this is another TEKRADIUS cofiguration file, I don't know which one I've to send:
[Server]
ListenIP=192.168.1.104
AuthPort=1812
AcctPort=1813
AcctEnabled=1
SecureShutdown=0
Logging=Debug
PEAPInnerMethod=1
AuthzOnly=0
UseDefAuthzQ=1
UseDefAuthKey=1
AltAuthzQ=Select * from Users where UserName='%Key%' and AttrType = 1
AttrKey=ietf|2
FailureCount=0
KeepDomainName=0
StartupMode=Manual
WAPEnabled=0
WAPDomain=VAIO
ADPEnabled=0
ADPDomain=127.0.0.1
[Database]
SQL_Server=.\SQLEXPRESS
Catalog=TekRADIUS
UserName=sa
Password=
EncryptPasswords=1
DelimiterChar=;
Timeout=30
[Tables]
Authentication=Users
Accounting=Accounting
Groups=Groups
Sessions=Sessions
AcctColumns=SessionID;StatusType;InputOcts;OutOcts;UserName;NasIPAddr;CallingStationId;CalledStationId;AcctSessTime;NasIdentifier;NasPort;NasPortId;NasPortType;FramedIPAddr;DisconnectCause
AcctValues=ietf|44 ietf|40 ietf|42 ietf|43 ietf|1 ietf|4 ietf|31 ietf|30 ietf|46 ietf|32 ietf|5 ietf|87 ietf|61 ietf|8 ietf|49
[Alerting]
Mail_Alerting_Enabled=0
SMTP_Server=?
Mail_To=?
Mail_From=?
Error_Duration=60
Mail_Period=15
Authentication_Required=0
SMTP_Username=
SMTP_Password=
edited by admin on 05.07.2010
0 permalink
04.07.2010 05:03:41

nhetho
nhetho
Posts: 5
Sorry for all the messages, but I think this would help a lot:
TekRADIUS Log File:
03/07/2010 11:44:03 a.m. - TekRADIUS Service 3.6.0.0 is being started (Microsoft Windows NT 6.1.7600.0).
03/07/2010 11:44:06 a.m. - TekRADIUS Service is listening on : 192.168.1.100 (2 client(s))
03/07/2010 11:56:43 a.m. - IP address configuration change has been detected
03/07/2010 11:56:43 a.m. - IP address configuration change has been detected
03/07/2010 11:57:05 a.m. - IP address configuration change has been detected
03/07/2010 11:57:05 a.m. - IP address configuration change has been detected
03/07/2010 11:57:05 a.m. - IP address configuration change has been detected
03/07/2010 11:57:05 a.m. - IP address configuration change has been detected
03/07/2010 11:57:05 a.m. - IP address configuration change has been detected
03/07/2010 08:50:38 p.m. - IP address configuration change has been detected
03/07/2010 08:50:38 p.m. - IP address configuration change has been detected
03/07/2010 08:50:38 p.m. - IP address configuration change has been detected
03/07/2010 08:50:38 p.m. - IP address configuration change has been detected
03/07/2010 08:51:51 p.m. - IP address configuration change has been detected
03/07/2010 08:51:51 p.m. - IP address configuration change has been detected
03/07/2010 08:51:51 p.m. - IP address configuration change has been detected
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:30 p.m.
Size : 125 / 125
Identifier : 0
Attributes :
03/07/2010 08:53:30 p.m. - Starting PEAP (A).
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
Framed-MTU = 1400
03/07/2010 08:53:30 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default).
03/07/2010 08:53:30 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:53:30 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:53:30 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:30 p.m.
Size : 228 / 228
Identifier : 0
Attributes :
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = 3471dea97aa64dbd39558283378505fa
Framed-MTU = 1400
03/07/2010 08:53:30 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:53:30 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:53:30 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:31 p.m.
Size : 154 / 154
Identifier : 0
Attributes :
03/07/2010 08:53:31 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A)
03/07/2010 08:53:31 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure.
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = 3471dea97aa64dbd39558283378505fa
Framed-MTU = 1400
03/07/2010 08:53:31 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:53:31 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:53:31 p.m. - PEAP Challenge sent for user 'nhetho'.
03/07/2010 08:54:07 p.m. - Session timer expired for the session : daf0789bc27ef78f9042a77e3d158f98
03/07/2010 08:54:07 p.m. - Session timer expired for the session : 3471dea97aa64dbd39558283378505fa
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m.
Size : 125 / 125
Identifier : 0
Attributes :
03/07/2010 08:54:29 p.m. - Starting PEAP (A).
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
Framed-MTU = 1400
03/07/2010 08:54:29 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default).
03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m.
Size : 228 / 228
Identifier : 0
Attributes :
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = ff51c63a88045865e03532f6e97f0750
Framed-MTU = 1400
03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m.
Size : 154 / 154
Identifier : 0
Attributes :
03/07/2010 08:54:29 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A)
03/07/2010 08:54:29 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure.
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = ff51c63a88045865e03532f6e97f0750
Framed-MTU = 1400
03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'.
03/07/2010 08:55:07 p.m. - Session timer expired for the session : ff51c63a88045865e03532f6e97f0750
03/07/2010 08:55:07 p.m. - Session timer expired for the session : 9991113cb7333abef26f66ea91a97581
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m.
Size : 125 / 125
Identifier : 0
Attributes :
03/07/2010 08:55:29 p.m. - Starting PEAP (A).
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
Framed-MTU = 1400
03/07/2010 08:55:29 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default).
03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m.
Size : 228 / 228
Identifier : 0
Attributes :
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = e09d4a11526e2ee433e1601ab503b351
Framed-MTU = 1400
03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m.
Size : 154 / 154
Identifier : 0
Attributes :
03/07/2010 08:55:29 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A)
03/07/2010 08:55:29 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure.
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = e09d4a11526e2ee433e1601ab503b351
Framed-MTU = 1400
03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'.
03/07/2010 08:56:07 p.m. - Session timer expired for the session : 879351036f1923c0b43e0658a2735290
03/07/2010 08:56:07 p.m. - Session timer expired for the session : e09d4a11526e2ee433e1601ab503b351
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m.
Size : 125 / 125
Identifier : 0
Attributes :
03/07/2010 08:57:08 p.m. - Starting PEAP (A).
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
Framed-MTU = 1400
03/07/2010 08:57:08 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default).
03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m.
Size : 228 / 228
Identifier : 0
Attributes :
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = e8b825230d06bc7915d4b1eccedb4f5c
Framed-MTU = 1400
03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m.
Size : 154 / 154
Identifier : 0
Attributes :
03/07/2010 08:57:08 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A)
03/07/2010 08:57:08 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure.
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = e8b825230d06bc7915d4b1eccedb4f5c
Framed-MTU = 1400
03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'.
03/07/2010 08:57:52 p.m. - Session timer expired for the session : da1b472cbf216eaaecfd4f064845829b
03/07/2010 08:57:52 p.m. - Session timer expired for the session : e8b825230d06bc7915d4b1eccedb4f5c
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m.
Size : 125 / 125
Identifier : 0
Attributes :
03/07/2010 08:58:07 p.m. - Starting PEAP (A).
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
Framed-MTU = 1400
03/07/2010 08:58:07 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default).
03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m.
Size : 228 / 228
Identifier : 0
Attributes :
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = fc843bb99eb2f4b182c19adebeb6c992
Framed-MTU = 1400
03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'.
RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m.
Size : 154 / 154
Identifier : 0
Attributes :
03/07/2010 08:58:07 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A)
03/07/2010 08:58:07 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure.
Calling-Station-Id = 002100b2a543
NAS-Port-Type = 19
Called-Station-Id = 002369c1bd6f
User-Name = nhetho
NAS-IP-Address = 192.168.1.1
NAS-Identifier = 002369c1bd6f
NAS-Port = 20
State = fc843bb99eb2f4b182c19adebeb6c992
Framed-MTU = 1400
03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default).
03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default).
03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'.
0 permalink
05.07.2010 14:27:23

Admin
Admin
Administrator
Posts: 1684
Hi,

Either import server certificate on client side or disable server certificate validation in client settings;



Best regards,

Yasin KAPLAN
edited by admin on 05.07.2010
0 permalink
05.07.2010 21:39:14

nhetho
nhetho
Posts: 5
Thanks for the help, now it's running very nice.
0 permalink
05.07.2010 21:56:51

Admin
Admin
Administrator
Posts: 1684
You welcome
0 permalink


Home » Installation » Computer can not access AP





Powered by Jitbit Forum 7.2.3.0 © 2006-2011 Jitbit Software