Hello

If anybody could explain me the meaning of this error :  "the user session was 
previously rejected: returning reject again"


Feb 19 15:34:49 nac9-1 auth[14910]: rlm_sql (sql): Opening additional 
connection (3), 1 of 63 pending slots used
Feb 19 15:34:49 nac9-1 auth[14910]: (31)   Invalid user: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf via TLS tunnel)
Feb 19 15:34:49 nac9-1 auth[14910]: (31)   Login incorrect: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf via TLS tunnel)
Feb 19 15:34:49 nac9-1 auth[14910]: [mac:a4:bb:6d:11:1f:cf] Rejected user: 
host/FV004837.kabi.ads.fresenius.com
Feb 19 15:34:49 nac9-1 auth[14910]: (32) Login incorrect (eap_peap: The users 
session was previously rejected: returning reject (again.)): 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf)
Feb 19 15:34:49 nac9-1 auth[14910]: (31)   Invalid user: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf via TLS tunnel)
Feb 19 15:34:49 nac9-1 auth[14910]: (31)   Login incorrect: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf via TLS tunnel)
Feb 19 15:34:49 nac9-1 auth[14910]: [mac:a4:bb:6d:11:1f:cf] Rejected user: 
host/FV004837.kabi.ads.fresenius.com
Feb 19 15:34:49 nac9-1 auth[14910]: (32) Login incorrect (eap_peap: The users 
session was previously rejected: returning reject (again.)): 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf)
Feb 19 15:35:19 nac9-1 auth[14910]: Signalled to terminate

one hour before it was OK on another member of the cluster

Feb 19 14:35:08 nac9-3 auth[2946]: rlm_sql (sql): Opening additional connection 
(3600), 1 of 62 pending slots used
Feb 19 14:35:08 nac9-3 auth[2946]: (93512)   Login OK: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf via TLS tunnel)
Feb 19 14:35:08 nac9-3 auth[2946]: [mac:a4:bb:6d:11:1f:cf] Accepted user: 
host/FV004837.kabi.ads.fresenius.com and returned VLAN 1136
Feb 19 14:35:08 nac9-3 auth[2946]: (93513) Login OK: 
[host/FV004837.kabi.ads.fresenius.com] (from client pf port 20 cli 
a4:bb:6d:11:1f:cf)


test with ntlm_auth is OK
root@nac9-1:~# chroot /chroots/KABI/  ntlm_auth --domain KABI --username rakoto 
--password "*****"
NT_STATUS_OK: Success (0x0)

I have no idea on how to test a machine account with ntlm_auth ,

Can anyone help me on testing the  radius authentication part ?

And to help debugging, would it be possible to redirect authentication request 
to a specific member of the cluster ?


Best regards.
Franck


_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to