18.11.2009 23:36:12
 jasonw Posts: 5
|
Hi Admin, I'm having a problem getting TekRADIUS to respond to an access request from a LinkSys router
using WPA2-Enterprise mode with AES encryption. I am new to
RADIUS server technology.
SETUP: I've installed TekRADIUS 3.4.0.0 and Microsoft SQL Server Express Edition 2005 on my Windows XP
SP3 computer. I have a LinkSys WRT54G (***DDWRT- FIRMWARE***) router as the client (In Tekradius
manager, I can not find brand name linksys, I add "client " NAS =172.16.0.54. SECRET =123456
VENDOR=TEKRADIUS, ENABLE =YES ).
The router is connected to the computer with an ethernet link. I'm trying to test out TekRADIUS
by authenticating a wireless connection to TekRADIUS from the computer (using a wireless adapter
with a different IP address). The LinkSys is set up for WPA2-Enterprise, AES, RADIUS port = 1812,
and a shared key (i.e., 123456).
I've set up a certificate using TekCERT (both Tekradius and Tekcert were installed on the same
desktop computer, windowsXP). I used Tekcert created a certificate "yuef.cer".
On TekRADIUS, I have set up the LinkSys router as a client with 172.16.0.54 and a secret =
LinkSys's shared key(123456). I've set up a user with a name, User-Password (type = Check) = password, TekRADIUS-Status (type =
Check) = Enabled, Authentication-Method (Type = Check) =
MS-CHAP-V2, TLS-Certificate (type = Check) = "yuef.cer" I created.
The TekRADIUS server starts up without any errors.
On the Windows XP side( laptop windowsXP with intel wireless 3945), for the wireless network,
After import the "yuef.cer", I set up the Network Authentication = WPA2, Data encryption = AES.
For Authentication, I set EAP type = Protected EAP (PEAP). Under properties, I checked Validate
server certificate. I only check a user's certificate (for example "yuef.cer" that I created on
the server side). I selected Secured password (EAP_MSCHAP v2), unser properties, unchecked "automatically use my
windows logon .......".
When I try to connect to the wireless network from the Windows XP Laptop, I see the Validating
identity message and a prompt asking to select a certificate or other credentials for connection to the network. I keyed in username and password.
No Lucky.
|
|
0
• permalink
|
19.11.2009 10:58:21
 Admin Administrator Posts: 1684
|
Hi,
Please set vendor type from TekRADIUS to ietf for RADIUS client entry. Adding Authentication-Method to user or group profile is optional but if you add it set its value to PEAP. Please test with this changes
Best regards,
Yasin KAPLAN
|
|
0
• permalink
|
19.11.2009 19:38:12
 jasonw Posts: 5
|
sorry a little bit mistake on above description. Actually, I export root certification (named as USER) and added it into clients (laptop ). Should I need to add yue.cer in to clients (laptop). Follow your advise, I set vendor type from TekRADIUS to ietf for RADIUS client entry. I change user's "Authentication-Method " to PEAP, I did not add any congiguration on group side. Should I add configuration on group side.
log information: 11/19/2009 8:14:10 AM - TekRADIUS Service 3.4.0.0 is being started.
11/19/2009 8:14:10 AM - TekRADIUS Service is listening on : 172.16.4.187 (2 client(s))
RadAuth req. from : 172.16.0.54 - 11/19/2009 8:15:51 AM Size : 121 / 121 Identifier : 0 Attributes :
11/19/2009 8:15:51 AM - Starting PEAP (A).
Calling-Station-Id = 001b772cef78 NAS-Port-Type = 19 Called-Station-Id = 0021298f6139 User-Name = yuef NAS-IP-Address = 172.16.0.54 NAS-Identifier = 0021298f6139 NAS-Port = 59 Framed-MTU = 1400
11/19/2009 8:15:51 AM - User configured for PEAP authentication; starting PEAP session.
11/19/2009 8:15:51 AM - Check items control - Start.
11/19/2009 8:15:51 AM - Check items control - Stop.
11/19/2009 8:15:51 AM - Fetching Success-Reply items - Start.
11/19/2009 8:15:51 AM - Fetching Success-Reply items - Stop.
11/19/2009 8:15:51 AM - Generating Reply Packet - Start.
11/19/2009 8:15:51 AM - Generating Reply Packet - Stop.
11/19/2009 8:15:51 AM - Authorization successfull for user yuef
RadAuth reply to : 172.16.0.54 - 11/19/2009 8:15:51 AM Size : 50 Identifier : 0 Attributes :
User-Name = yuef
11/19/2009 8:16:25 AM - Session timer expired for the session : 28fb22aff813156e4d32eb60fffa6f9f
11/19/2009 8:16:25 AM - Session timer expired for the session : c2e1f1b7f0c2a8a6a169f21d385d1640
|
|
0
• permalink
|
20.11.2009 10:59:11
 Admin Administrator Posts: 1684
|
Hi,
Unfortunately you've made a common mistake. Please uncheck Settings / Service Parameters / Authorization Only option. By the way, why have you set this option?
Best regards,
Yasin KAPLAN
|
|
0
• permalink
|
21.11.2009 09:19:24
 jasonw Posts: 5
|
Hi Admin,
Appreciate for your help. It seems work now. I am wondering, does Tekradius support black berry? If it does, how to set it up on Takradius manager side and Black berry side, because on black berry side, I can not find the certifications "USER"(root certification) in black berry.
Thank U.
Jason
|
|
0
• permalink
|
21.11.2009 10:40:17
 Admin Administrator Posts: 1684
|
Dear Jason,
Is's a little tricky but you can load public server certificate to Balck Berry. Please see: Import a new SSL certificate for the BlackBerry Administration Service and BlackBerry Web Desktop Manager.
Best regards,
Yasin KAPLAN
|
|
0
• permalink
|
30.06.2010 16:09:56
 nl17185 Posts: 13
|
Hello All,
I'm having the same issue, I want to use tekradius to authenticate a wireless client (computer) with windows-domain credentials. I have a cisco access-point configured for peap, client computer is configured for wpa2-aes and peap. I want to enter the domain username and password credentials when I am connecting to the wireless network.
What attributes needs to be configured for this to work? - Authentication-Method (Type = Check) = MS-CHAP-V2 ? - TLS-Certificate (type = Check) = "[file_name.cer]" ?
Thanks for your response. regards Marcel
|
|
0
• permalink
|
30.06.2010 18:54:50
 Admin Administrator Posts: 1684
|
Hi,
You need to have following attributes in your use profile;
User-Password (Check) TLS-Password (Check)
Best regards,
Yasin KAPLAN
|
|
0
• permalink
|
30.06.2010 19:29:25
 nl17185 Posts: 13
|
Hello Yasin,
User-Password (Check), but then it is fixed, what when the user changes his password on the domain? TLS-Password (Check), I can't find this attribute, do you mean: TLS-Certificate (Check) ?, I have this one configured.
Thanks
|
|
0
• permalink
|
01.07.2010 11:19:31
 Admin Administrator Posts: 1684
|
You can not use PEAP authentication with Windows or Active Directory accounts. You must have local user profiles in TekRADIUS database. TekRADIUS can not access clear text passwords of Windows or Active Directory accounts.
|
|
0
• permalink
|
03.07.2010 01:56:54
 nhetho Posts: 5
|
Hello Yasin, I'm new on this and have a similar problem. When I try to connect to the wireless network from the Windows XP Laptop, I see the Validating identity message and a prompt asking to select a certificate or other credentials for connection to the network. I used my username and password from the configuration and didn’t work.
I´ve tried TekRADIUS with diferent computers, on Windows 7 and Windows XP, using Microsoft SQL Server 2008 x64 and x86 respectivly, with correct configuration of SQL Server. I'm still having the same problem.
My configurations: Settings Tab: SQL Connection SQL Server: 192.168.1.104 Timeout: 30 Usename: sa Password: 12345678 Use Default Authentificatione Key: Check ... Service Parameters Listen IP Address: 192.168.1.104 Startup: Manual Logging: None Authorization Only: Uncheck Failure Count: 0 Authentication Port: 1812 Secure Shutdown: Uncheck PEAP Inner Auth. Method: EAP-MS-CHAP-V2 Keep Domain Name: Uncheck Accounting Enable: check Accounting Port: 1813 Clients Tab: NAS: 127.0.0.1 Secret: test Vendor: ietf Enabled: Yes NAS: 192.168.1.1 Secret: 12345678 Vendor: ietf Enabled: Yes Router WRT160N v3.0 cofigured with WPA2 Enterprise, Server Radius: 192.168.1.104, Pre-Share Key: 12345678 Groups Tab: Group Name: Default Authentication Method (check) PEAP TLS-Certificate (check) HOME *HOME already install on the server and client Users Tab: Username: nhetho Group: Default User-password (check) 12345678 TLS-Certificate (check) HOME
|
|
0
• permalink
|
03.07.2010 09:26:34
 Admin Administrator Posts: 1684
|
Hi,
Can you set logging level to debug and send me TekRADIUS.log entries for a sample session?
Best regards,
Yasin KAPLAN
|
|
0
• permalink
|
03.07.2010 19:18:14
 nhetho Posts: 5
|
Hi, thanks for the quick answer. I´ve already set logging to debug, the TEKRADIUS log file only have this:
03/07/2010 11:10:43 a.m. - TekRADIUS Service 3.6.0.0 is being started (Microsoft Windows NT 5.1.2600 Service Pack 3). 03/07/2010 11:10:47 a.m. - TekRADIUS Service is listening on : 192.168.1.104 (2 client(s))
|
|
0
• permalink
|
03.07.2010 19:27:28
 nhetho Posts: 5
|
By the way, this is another TEKRADIUS cofiguration file, I don't know which one I've to send: [Server] ListenIP=192.168.1.104 AuthPort=1812 AcctPort=1813 AcctEnabled=1 SecureShutdown=0 Logging=Debug PEAPInnerMethod=1 AuthzOnly=0 UseDefAuthzQ=1 UseDefAuthKey=1 AltAuthzQ=Select * from Users where UserName='%Key%' and AttrType = 1 AttrKey=ietf|2 FailureCount=0 KeepDomainName=0 StartupMode=Manual WAPEnabled=0 WAPDomain=VAIO ADPEnabled=0 ADPDomain=127.0.0.1 [Database] SQL_Server=.\SQLEXPRESS Catalog=TekRADIUS UserName=sa Password= EncryptPasswords=1 DelimiterChar=; Timeout=30 [Tables] Authentication=Users Accounting=Accounting Groups=Groups Sessions=Sessions AcctColumns=SessionID;StatusType;InputOcts;OutOcts;UserName;NasIPAddr;CallingStationId;CalledStationId;AcctSessTime;NasIdentifier;NasPort;NasPortId;NasPortType;FramedIPAddr;DisconnectCause AcctValues=ietf|44 ietf|40 ietf|42 ietf|43 ietf|1 ietf|4 ietf|31 ietf|30 ietf|46 ietf|32 ietf|5 ietf|87 ietf|61 ietf|8 ietf|49 [Alerting] Mail_Alerting_Enabled=0 SMTP_Server=? Mail_To=? Mail_From=? Error_Duration=60 Mail_Period=15 Authentication_Required=0 SMTP_Username= SMTP_Password= edited by admin on 05.07.2010
|
|
0
• permalink
|
04.07.2010 05:03:41
 nhetho Posts: 5
|
Sorry for all the messages, but I think this would help a lot: TekRADIUS Log File: 03/07/2010 11:44:03 a.m. - TekRADIUS Service 3.6.0.0 is being started (Microsoft Windows NT 6.1.7600.0). 03/07/2010 11:44:06 a.m. - TekRADIUS Service is listening on : 192.168.1.100 (2 client(s)) 03/07/2010 11:56:43 a.m. - IP address configuration change has been detected 03/07/2010 11:56:43 a.m. - IP address configuration change has been detected 03/07/2010 11:57:05 a.m. - IP address configuration change has been detected 03/07/2010 11:57:05 a.m. - IP address configuration change has been detected 03/07/2010 11:57:05 a.m. - IP address configuration change has been detected 03/07/2010 11:57:05 a.m. - IP address configuration change has been detected 03/07/2010 11:57:05 a.m. - IP address configuration change has been detected 03/07/2010 08:50:38 p.m. - IP address configuration change has been detected 03/07/2010 08:50:38 p.m. - IP address configuration change has been detected 03/07/2010 08:50:38 p.m. - IP address configuration change has been detected 03/07/2010 08:50:38 p.m. - IP address configuration change has been detected 03/07/2010 08:51:51 p.m. - IP address configuration change has been detected 03/07/2010 08:51:51 p.m. - IP address configuration change has been detected 03/07/2010 08:51:51 p.m. - IP address configuration change has been detected RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:30 p.m. Size : 125 / 125 Identifier : 0 Attributes : 03/07/2010 08:53:30 p.m. - Starting PEAP (A). Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 Framed-MTU = 1400 03/07/2010 08:53:30 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default). 03/07/2010 08:53:30 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:53:30 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:53:30 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:30 p.m. Size : 228 / 228 Identifier : 0 Attributes : Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = 3471dea97aa64dbd39558283378505fa Framed-MTU = 1400 03/07/2010 08:53:30 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:53:30 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:53:30 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:53:31 p.m. Size : 154 / 154 Identifier : 0 Attributes : 03/07/2010 08:53:31 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A) 03/07/2010 08:53:31 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure. Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = 3471dea97aa64dbd39558283378505fa Framed-MTU = 1400 03/07/2010 08:53:31 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:53:31 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:53:31 p.m. - PEAP Challenge sent for user 'nhetho'. 03/07/2010 08:54:07 p.m. - Session timer expired for the session : daf0789bc27ef78f9042a77e3d158f98 03/07/2010 08:54:07 p.m. - Session timer expired for the session : 3471dea97aa64dbd39558283378505fa RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m. Size : 125 / 125 Identifier : 0 Attributes : 03/07/2010 08:54:29 p.m. - Starting PEAP (A). Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 Framed-MTU = 1400 03/07/2010 08:54:29 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default). 03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m. Size : 228 / 228 Identifier : 0 Attributes : Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = ff51c63a88045865e03532f6e97f0750 Framed-MTU = 1400 03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:54:29 p.m. Size : 154 / 154 Identifier : 0 Attributes : 03/07/2010 08:54:29 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A) 03/07/2010 08:54:29 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure. Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = ff51c63a88045865e03532f6e97f0750 Framed-MTU = 1400 03/07/2010 08:54:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:54:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:54:29 p.m. - PEAP Challenge sent for user 'nhetho'. 03/07/2010 08:55:07 p.m. - Session timer expired for the session : ff51c63a88045865e03532f6e97f0750 03/07/2010 08:55:07 p.m. - Session timer expired for the session : 9991113cb7333abef26f66ea91a97581 RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m. Size : 125 / 125 Identifier : 0 Attributes : 03/07/2010 08:55:29 p.m. - Starting PEAP (A). Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 Framed-MTU = 1400 03/07/2010 08:55:29 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default). 03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m. Size : 228 / 228 Identifier : 0 Attributes : Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = e09d4a11526e2ee433e1601ab503b351 Framed-MTU = 1400 03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:55:29 p.m. Size : 154 / 154 Identifier : 0 Attributes : 03/07/2010 08:55:29 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A) 03/07/2010 08:55:29 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure. Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = e09d4a11526e2ee433e1601ab503b351 Framed-MTU = 1400 03/07/2010 08:55:29 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:55:29 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:55:29 p.m. - PEAP Challenge sent for user 'nhetho'. 03/07/2010 08:56:07 p.m. - Session timer expired for the session : 879351036f1923c0b43e0658a2735290 03/07/2010 08:56:07 p.m. - Session timer expired for the session : e09d4a11526e2ee433e1601ab503b351 RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m. Size : 125 / 125 Identifier : 0 Attributes : 03/07/2010 08:57:08 p.m. - Starting PEAP (A). Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 Framed-MTU = 1400 03/07/2010 08:57:08 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default). 03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m. Size : 228 / 228 Identifier : 0 Attributes : Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = e8b825230d06bc7915d4b1eccedb4f5c Framed-MTU = 1400 03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:57:08 p.m. Size : 154 / 154 Identifier : 0 Attributes : 03/07/2010 08:57:08 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A) 03/07/2010 08:57:08 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure. Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = e8b825230d06bc7915d4b1eccedb4f5c Framed-MTU = 1400 03/07/2010 08:57:08 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:57:08 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:57:08 p.m. - PEAP Challenge sent for user 'nhetho'. 03/07/2010 08:57:52 p.m. - Session timer expired for the session : da1b472cbf216eaaecfd4f064845829b 03/07/2010 08:57:52 p.m. - Session timer expired for the session : e8b825230d06bc7915d4b1eccedb4f5c RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m. Size : 125 / 125 Identifier : 0 Attributes : 03/07/2010 08:58:07 p.m. - Starting PEAP (A). Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 Framed-MTU = 1400 03/07/2010 08:58:07 p.m. - User configured for PEAP authentication; starting PEAP session (Group : Default). 03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m. Size : 228 / 228 Identifier : 0 Attributes : Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = fc843bb99eb2f4b182c19adebeb6c992 Framed-MTU = 1400 03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'. RadAuth req. from : 192.168.1.1:1038 - 03/07/2010 08:58:07 p.m. Size : 154 / 154 Identifier : 0 Attributes : 03/07/2010 08:58:07 p.m. - Abnormal EAP request recevied, requesting identity. (PEAP State 3A) 03/07/2010 08:58:07 p.m. - Unsupported Cipher Suite, TLS Session has been aborted, sending Handshake Failure. Calling-Station-Id = 002100b2a543 NAS-Port-Type = 19 Called-Station-Id = 002369c1bd6f User-Name = nhetho NAS-IP-Address = 192.168.1.1 NAS-Identifier = 002369c1bd6f NAS-Port = 20 State = fc843bb99eb2f4b182c19adebeb6c992 Framed-MTU = 1400 03/07/2010 08:58:07 p.m. - Check items control - Start (Group : Default). 03/07/2010 08:58:07 p.m. - Check items control - Stop (Group : Default). 03/07/2010 08:58:07 p.m. - PEAP Challenge sent for user 'nhetho'.
|
|
0
• permalink
|
05.07.2010 14:27:23
 Admin Administrator Posts: 1684
|
Hi,
Either import server certificate on client side or disable server certificate validation in client settings;
Best regards,
Yasin KAPLAN edited by admin on 05.07.2010
|
|
0
• permalink
|
05.07.2010 21:39:14
 nhetho Posts: 5
|
Thanks for the help, now it's running very nice.
|
|
0
• permalink
|
05.07.2010 21:56:51
 Admin Administrator Posts: 1684
|
You welcome
|
|
0
• permalink
|