Re: Freeradius error: "Discarding conflicting packet"

2008-11-04 Thread Eric Ying
I used sniffer to checked radius packet between authenticator <--> radius
I also use sniffer to checked eapol between supplicant <--> authenticator
By using these 2 ways to troubleshooting authentication issues.
Hope this info help you.

Eric YIng

2008/11/4 Sergio Belkin <[EMAIL PROTECTED]>

> 2008/11/4  <[EMAIL PROTECTED]>:
> >
> http://www.mail-archive.com/freeradius-users@lists.freeradius.org/msg45635.html
> >
> > There is nothing to see in server debug for the packet that's discarded.
> >
> > Ivan Kalik
> > Kalik Informatika ISP
> >
> >
> > Dana 4/11/2008, "Marinko Tarlac" <[EMAIL PROTECTED]> piše:
> >
> >>Sorry for bothering but does anyone know what's wrong with these nases?
> >>Is there any way to go a little deeper than  #radiusd -x ?
> >>
> >>
> >>Jelle wrote:
> >>> Jep, in my case I use about 30 AP's from Linksys (WAP54g). They all
> >>> appear to be broken. To bad, but then again a reason to integrate the
> >>> N standard with other AP's... :)
> >>>
> >>>
> >>>
> >>> 2008/11/4 Stephen Bowman <[EMAIL PROTECTED]  [EMAIL PROTECTED]>>
> >>>
> >>>
> >>>
> >>> > But what do you mean for "fix the nas"? Should I use another
> >>> brand/model of AP?
> >>>
> >>> What I am trying to tell you is are the about of 30 AP's that
> >>> I am using broken?
> >>>
> >>>
> >>> Yes.
> >>>
> >>>
> >>> -
> >>> List info/subscribe/unsubscribe? See
> >>> http://www.freeradius.org/list/users.html
> >>>
> >>>
> >>>
> 
> >>>
> >>> -
> >>> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
> >>
> >>-
> >>List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
> >>
> >>
> >
> > -
> > List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
> >
>
> OK, AP's are broken, now with best regards, how I convince to my boss
> that he should buy more than 30 new AP's, should I tell him... "read
> the freeradius mailing list"?
>
> --
> --
> Open Kairos http://www.openkairos.com
> Watch More TV http://sebelk.blogspot.com
> Sergio Belkin -
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Re: WiFI EAP-PEAP with VLAN

2008-11-04 Thread Eric Ying
some NAS will drop the access-accept or remain port close if the vlan
provide from radius doesn't match the swith's vlan.

eric

On Tue, Nov 4, 2008 at 8:59 AM, Alan DeKok <[EMAIL PROTECTED]>wrote:

> Dajka Tamás wrote:
> > Is it possible to include a VLAN tag in the reply, so that client is
> assigned to the appropirate VLAN based on it's auth group ( so,  if USER_A
> is member of GROUP_A, than it's assigned to VLAN_A)
>
>   Yes.  See your NAS documentation for documentation about what it needs
> to see in the RADIUS response.
>
>  Alan DeKok.
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html