hi ville
well, it's true, it shouldn't be 3. EAP/TLS type is 13, not 3 (ftp://ftp.isi.edu/in-notes/rfc2716.txt, page 16). i don't know why your devices are sending 3 in the request. ciao artur > rad_recv: Access-Request packet from host 194.100.181.250:1026, id=27, > length=213 > Framed-MTU = 1480 > NAS-IP-Address = 194.100.181.250 > NAS-Identifier = "EAP_SW" > User-Name = "demo" > Service-Type = Framed-User > Framed-Protocol = PPP > NAS-Port = 1 > NAS-Port-Type = Ethernet > NAS-Port-Id = "1" > Called-Station-Id = "00-01-e7-b7-29-e1" > Calling-Station-Id = "00-01-03-66-7f-19" > Connect-Info = "CONNECT Ethernet 100Mbps Full duplex" > State = > 0x85b985c00847873f0bc0aa19e8058cb3d1dcab3defe97f622b3066cdae9a061fa2510059 > EAP-Message = "\002\003\000\006\003\004" > Message-Authenticator = 0xf5f8be56aecefced5cce3f9f7c6e77a9 > modcall: entering group authorize > modcall[authorize]: module "preprocess" returns ok > modcall[authorize]: module "eap" returns updated > rlm_realm: Looking up realm NULL for User-Name = "demo" > rlm_realm: No such realm NULL > modcall[authorize]: module "suffix" returns noop > users: Matched demo at 139 > modcall[authorize]: module "files" returns ok > modcall: group authorize returns updated > rad_check_password: Found Auth-Type EAP > auth: type "EAP" > modcall: entering group authenticate > rlm_eap: Request found, released from the list > rlm_eap: Unsupported EAP_TYPE 3 > modcall[authenticate]: module "eap" returns invalid > modcall: group authenticate returns invalid > auth: Failed to validate the user. > Delaying request 1 for 1 seconds > Finished request 1 -- Artur Hecker artur[at]hecker.info - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html