> Radius Server has sent an Access-Challenge with EAP-MD5 challenge value
> for which the client should respond back.
> Based on the response received, Radius Server authenticates the user.
The reason there is not response back is because the 3com access point
interprets challenge as a failure. Hence the syslog entry for the access
point
Mar 14 13:49:55 accesspoint  802.1x FSM: Supplicant 00:40:96:48:89:b6 has
failed Authentication
Mar 14 14:06:05 accesspoint  Associated station [ AID = 001,
00:40:96:48:89:b6 ]
Mar 14 14:06:10 accesspoint  802.1x FSM: Supplicant 00:40:96:48:89:b6 has
failed Authentication

Is there any special setting I must define for the user? The access point
and client only has one setting which is EAP-MD5. I do not have any DEFAULT
setting for EAP. There seems to be setting for SLIP and other protocols in
the users file.  Am I missing something in the configuration of the radius
server?

Eric

----- Original Message -----
From: "Raghu" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Thursday, March 14, 2002 12:05 PM
Subject: Re: 3com Wirless Access Point and FreeRadius


> > NOW I ASSUME THE MESSAGE BEING SENT BACK IT MY SECOND PACKET IN THE
SNIFFER
> > LOG.
> > 64.95.221.220-> 192.168.100.170 UDP D=1812 S=1812 LEN=108
> >
> > Sending Access-Challenge of id 62 to 64.214.69.230:4916
> >         EAP-Message =
> > "\001>\000\026\004\020#\237\300j\320\225\376<\2639\262\265\340\333F\243"
> >         Message-Authenticator = 0x00000000000000000000000000000000
> >         State =
> >
0xa6e15e0f06d3880b882260dbb8e69f2de88c903cf69a33702ce1ec0ba905020673dd8337
> > Finished request 0
> >
> > It seems as though the 3com access point interprets this message as an
> > authentification failure and ends the conversation. It also displays an
> > message box "authentification failure" on the client side. What is the
> > contents of the message being sent back to the 3com access point? Does
> > anyone know a reason the 3com device will interpret the Challenge
message as
> > a failure?
> >
>
> Radius Server has sent an Access-Challenge with EAP-MD5 challenge value
> for which the client should respond back.
> Based on the response received, Radius Server authenticates the user.
>
> Since there is no response received,
> I think there is some misconfiguration either on your AP or client.
>
> You might also want to check, what EAP-Types ( like EAP-MD5 ...)
> are supported by your 3com client & AP.
>
> -Raghu
>
> -
> List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to