Hello everyone,

We are authenticating Wifi users to Google LDAP using Packetfence as Radius
Server, using TTLS, it is working on our Production environment using 13.0
version, we are trying to upgrade to the latest version (14.1) but, with
the same configuration, it is not working, receiving the following errors
(anonymised logs):

May 5 10:24:56 localhost auth[9124]: Unresponsive child for request 45, in
component authenticate module eap_ttls
May 5 10:25:27 localhost auth[9124]: (45) Invalid user ([authentication
source]): Hit reconnection limit): [xxxxxx...@xxxxxxx.com] (from client
xx.xx.xx.xx/32 <http://172.26.154.12/32> port 1 cli [mac address] via TLS
tunnel)
May 5 10:25:27 localhost auth[9124]: (45) Rejected in post-auth: [
xxxxxx...@xxxxxxx.com] (from client xx.xx.xx.xx/32
<http://172.26.154.12/32> port
1 cli [mac address] via TLS tunnel)
May 5 10:25:27 localhost auth[9124]: (45) Login incorrect ([authentication
source]: Hit reconnection limit): [xxxxxx...@xxxxxxx.com] (from client
xx.xx.xx.xx/32 <http://172.26.154.12/32> port 1 cli [mac address] via TLS
tunnel)
May 5 10:25:27 localhost auth[9124]: (45) WARNING: Module rlm_eap became
unblocked

We detected that the issue starts on 13.2 version, if we upgrade to 13.1 it
works perfect.

Any help will be appreciated.

On Debug mode, the last logs we have are:

(29) Tue May 6 16:11:36 2025: WARNING: xxxxxxxxx_ldaps: Search failed:
Timed out while waiting for server to respond. Got new socket, retrying...

(29) Tue May 6 16:11:36 2025: Debug: xxxxxxxx_ldaps: Waiting for search
result...

(23) Tue May 6 16:11:38 2025: WARNING: xxxxxxx_ldaps: Search failed: Timed
out while waiting for server to respond. Got new socket, retrying...

(23) Tue May 6 16:11:38 2025: Debug: xxxxx_ldaps: Waiting for search
result...

(29) Tue May 6 16:11:57 2025: WARNING: xxxxxxx_ldaps: Search failed: Timed
out while waiting for server to respond. Got new socket, retrying...

(29) Tue May 6 16:11:57 2025: Debug: xxxxxxx_ldaps: Waiting for search
result...

(23) Tue May 6 16:11:58 2025: WARNING: xxxxxxxxx_ldaps: Search failed:
Timed out while waiting for server to respond. Got new socket, retrying...

(23) Tue May 6 16:11:58 2025: Debug: xxxxxxxx_ldaps: Waiting for search
result...

If we use this authentication source to log in on the admin portal, it
works perfectly but not for Wifi authentication

Thanks

-- 
Antonio Martin Fuertes
Systems Engineer
Devoteam Group — IT Department
antonio.martinfuer...@devoteam.com
[image: Visual 2]
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to