Hi guys,

Saya mencoba setup akses poin dengan wpa2-eap-radius untuk auth dan
accounting. radius jalan dengan debian 5 , freeradius 2.1.9 (vanila),
dan akses point menggunakan
openwrt backfire.

Auth dan accounting sudah berjalan dg baik, hanya saja hostapd tidak
memproses radius reply seperti Session-Timeout,
Idle-Timeout,Acct-Interim-Interval, dll

snip freeradius log:
...
...
} # server inner-tunnel
[peap] Got tunneled reply code 2
        Max-Daily-Session := 9000
        Idle-Timeout := 300
        Acct-Interim-Interval := 120
        Session-Timeout := 500
        EAP-Message = 0x03390004
        Message-Authenticator = 0x00000000000000000000000000000000
        User-Name = "tes"
[peap] Got tunneled reply RADIUS code 2
        Max-Daily-Session := 9000
        Idle-Timeout := 300
        Acct-Interim-Interval := 120
        Session-Timeout := 500
        EAP-Message = 0x03390004
        Message-Authenticator = 0x00000000000000000000000000000000
        User-Name = "tes"
[peap] Tunneled authentication was successful.
[peap] SUCCESS
++[eap] returns handled


hostapd log:
...
...
RADIUS message: code=2 (Access-Accept) identifier=10 length=167
   Attribute 26 (Vendor-Specific) length=58
      Value: 00 00 01 37 11 34 85 85 d5 df e2 6e d1 21 1e fe 64 19 99
8e 4d 27 51 47 81 a5 9c fc dd e6 f6 d5 15 34 04 b7 a3 e4 31 12 89 78
25 85 ec 8d 54 6f 37 04 35 c6 b4 a2 88 5c
   Attribute 26 (Vendor-Specific) length=58
      Value: 00 00 01 37 10 34 8d d0 bb 58 ef ec 44 c1 a7 85 41 25 96
99 6e f7 a2 79 b6 34 f3 d0 f0 4d a3 3d d5 d9 04 10 4f b0 98 34 9b c3
2d 75 53 48 ac eb 26 a3 51 c0 8a 3b 8d 8a
   Attribute 79 (EAP-Message) length=6
      Value: 03 72 00 04
   Attribute 80 (Message-Authenticator) length=18
      Value: 7a e6 71 13 a0 1e 1b 01 93 14 48 2b 98 a7 bb 5a
   Attribute 1 (User-Name) length=7
      Value: 'tes'
wlan0: STA 00:24:2c:8b:08:34 RADIUS: Received RADIUS packet matched
with a pending request, round trip time 0.00 sec
RADIUS packet matching with station 00:24:2c:8b:08:34
MS-MPPE-Send-Key - hexdump(len=32): 54 03 34 0b c2 1c b4 fc 6d 36 2a
d4 e5 ef dd 87 72 4e 9b e9 e7 5e ce 9d c9 dc 3d 48 9c 50 0e 70
MS-MPPE-Recv-Key - hexdump(len=32): c0 82 60 51 bd 9b 76 e2 30 c0 da
8f d5 b0 3f 5a 20 bc e1 45 b3 e2 d6 08 7d 54 2a 87 44 83 41 56
wlan0: STA 00:24:2c:8b:08:34 IEEE 802.1X: old identity 'tes' updated
with User-Name from Access-Accept 'tes'
wlan0: STA 00:24:2c:8b:08:34 IEEE 802.1X: decapsulated EAP packet
(code=3 id=114 len=4) from RADIUS server: EAP Success
EAP: EAP entering state SUCCESS2
IEEE 802.1X: 00:24:2c:8b:08:34 BE_AUTH entering state SUCCESS
wlan0: STA 00:24:2c:8b:08:34 IEEE 802.1X: Sending EAP Packet (identifier 114)
IEEE 802.1X: 00:24:2c:8b:08:34 BE_AUTH entering state IDLE
WPA: 00:24:2c:8b:08:34 WPA_PTK entering state INITPMK


Saya ingin lihat jika Session-Timeout di set dan sdh tercapai, maka
hostapd akan me- deauth client tsb

TIA
--
Deedee

-- 
FAQ milis di http://wiki.linux.or.id/FAQ_milis_tanya-jawab
Unsubscribe: kirim email ke tanya-jawab-unsubscr...@linux.or.id
Arsip dan info milis selengkapnya di http://linux.or.id/milis

Kirim email ke