Getting error in radius server with dot1X and supplicant on windows

This is a discussion on Getting error in radius server with dot1X and supplicant on windows within the FreeRADIUS Users forums, part of the Networking and Network Related category; This is a multi-part message in MIME format. --===============1091228168== Content-class: urn:content-classes:message Content-Type: multipart/alternative; ...


Go Back   Usenet Forums > Networking and Network Related > FreeRADIUS Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-16-2007
 
Posts: n/a
Default Getting error in radius server with dot1X and supplicant on windows

This is a multi-part message in MIME format.

--===============1091228168==
Content-class: urn:content-classes:message
Content-Type: multipart/alternative;
boundary="----_=_NextPart_001_01C75184.E7738720"

This is a multi-part message in MIME format.

------_=_NextPart_001_01C75184.E7738720
Content-Type: text/plain;
charset="us-ascii"
Content-Transfer-Encoding: quoted-printable


Hi All,
=20
I am using free radius server with dot1X. and supplicant is on
windows XP. Here when I use user name <=3D 3 letters I am getting
following error...
=20
1. Received packet from 192.168.112.90 with invalid
Message-Authenticator! (Shared secret is incorrect.)
=20
and for user name <=3D3 my client is getting following error.
2. Malformed RADIUS packet from host 192.168.0.1: too short (length
17 < minimum 20).

where as radius RFC say... user name length can be >=3D 3.=20

since user name goes as part of attributes in radius packet... but
errors we are getting are totally different.=20

I mean first we are getting related to message-authenticator where as we
are passing username with length <=3D3. and second error my client getting
is related to packet length...another interesting thing is we get these
errors only for PEAP configuration.... this will work for MD5 and
others.

can any one help me in this.=20

whether we are getting different errors because both of us may be using
different versions of RADIUS server? just a guess.=20

This error may be because of RADIUS client or server?

Thanx in Advance...

---Raghu.

=20

=20

=20

=20




The information contained in this electronic message and any attachments to=
this message are intended for the exclusive use of the addressee(s) and=
may contain proprietary, confidential or privileged information. If you=
are not the intended recipient, you should not disseminate, distribute or=
copy this e-mail. Please notify the sender immediately and destroy all=
copies of this message and any attachments.=20

WARNING: Computer viruses can be transmitted via email. The recipient=
should check this email and any attachments for the presence of viruses.=
The company accepts no liability for any damage caused by any virus=
transmitted by this email.
=20
www.wipro.com
------_=_NextPart_001_01C75184.E7738720
Content-Type: text/html;
charset="us-ascii"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; charset=3Dus-ascii">
<META content=3D"MSHTML 6.00.2900.3020" name=3DGENERATOR></HEAD>
<BODY>
<DIV dir=3Dltr align=3Dleft><SPAN class=3D783540312-15022007><FONT face=
=3DArial=20
size=3D2>Hi All,</FONT></SPAN></DIV>
<DIV><SPAN class=3D783540312-15022007><FONT face=3DArial=20
size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D783540312-15022007>&nbsp;&nbsp;&nbsp; <FONT face=3DArial=
size=3D2>I=20
am using free radius server with dot1X. and supplicant is&nbsp;on windows=
XP.=20
Here when I use user name &lt;=3D 3 letters I am getting following=20
error...</FONT></SPAN></DIV>
<DIV><SPAN class=3D783540312-15022007><FONT face=3DArial=20
size=3D2></FONT></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D783540312-15022007>&nbsp;&nbsp;<STRONG>&nbsp;<FONT face=
=3DArial=20
size=3D2>1.</FONT></STRONG> <FONT face=3DArial size=3D2><STRONG>Received=
packet from=20
192.168.112.90 with invalid Message-Authenticator!&nbsp;(Shared secret is=20
incorrect.)</STRONG></FONT></SPAN></DIV>
<DIV><SPAN class=3D783540312-15022007><STRONG><FONT face=3DArial=20
size=3D2></FONT></STRONG></SPAN>&nbsp;</DIV>
<DIV><SPAN class=3D783540312-15022007><FONT face=3DArial size=
=3D2>&nbsp;&nbsp;&nbsp;=20
and for user name &lt;=3D3&nbsp;my client is getting following=20
error.</FONT></SPAN></DIV>
<DIV><SPAN class=3D783540312-15022007>
<P><FONT face=3DArial><FONT size=3D2><SPAN=20
class=3D783540312-15022007>&nbsp;&nbsp;&nbsp;<STRONG>2.=20
</STRONG></SPAN><STRONG>Malformed RADIUS packet from host 192.168.0.1: too=
short=20
(length 17 &lt; minimum 20)<SPAN=20
class=3D783540312-15022007>.</SPAN></STRONG></FONT></FONT></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN class=3D783540312-15022007>where=
as radius=20
RFC say... user name length can be &gt;=3D 3. </SPAN></FONT></FONT></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN class=3D783540312-15022007>since=
user name=20
goes as part of attributes in radius packet...&nbsp;but errors we are=
getting=20
are totally different. </SPAN></FONT></FONT></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN class=3D783540312-15022007>I=20
mean&nbsp;first we are getting related to message-authenticator where as we=
are=20
passing username with length &lt;=3D3.&nbsp;and second error my client=
getting is=20
related to packet length...another interesting thing is we get these=20
<STRONG>errors only for PEAP&nbsp;</STRONG>configuration.... this will work=
for=20
MD5 and others.</SPAN></FONT></FONT></P>
<P><SPAN class=3D783540312-15022007><FONT face=3DArial><FONT size=3D2>can=
any one help=20
me in this.<SPAN class=3D663153914-15022007><FONT=20
color=3D#0000ff>&nbsp;</FONT></SPAN></FONT></FONT></SPAN></P>
<P><SPAN class=3D783540312-15022007><FONT size=3D+0><SPAN=20
class=3D663153914-15022007><FONT size=3D2><FONT face=
=3DArial>whether&nbsp;we=20
are&nbsp;getting different errors because both of us may be using different=
=20
versions of RADIUS server? just a guess.=
</FONT></FONT></SPAN></FONT></SPAN></P>
<P><SPAN class=3D783540312-15022007><FONT size=3D+0><SPAN=20
class=3D663153914-15022007><FONT size=3D2><FONT face=
=3DArial>This&nbsp;error may be=20
because of RADIUS client or server?</FONT></FONT></SPAN></FONT></SPAN></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN class=3D783540312-15022007>Thanx=
in=20
Advance...</SPAN></FONT></FONT></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN=20
class=3D783540312-15022007>---Raghu.</SPAN></FONT></FONT></P>
<P><FONT face=3DArial><FONT size=3D2><SPAN=20
class=3D783540312-15022007></SPAN></FONT></FONT>&nbsp;</P>
<P><FONT face=3DArial><FONT size=3D2><SPAN=20
class=3D783540312-15022007></SPAN></FONT></FONT>&nbsp;</P>
<P><FONT face=3DArial><FONT size=3D2><SPAN=20
class=3D783540312-15022007></SPAN></FONT></FONT>&nbsp;</P>
<P><FONT face=3DArial><FONT size=3D2><STRONG><SPAN=20
class=
=3D783540312-15022007></SPAN></STRONG></FONT></FONT>&nbsp;</P></SPAN></DIV>=
</BODY></HTML>

<table><tr><td bgcolor=3D#ffffff><font color=3D#000000><br>
The information contained in this electronic message and any attachments to=
this message are intended for the exclusive use of the addressee(s) and=
may contain proprietary, confidential or privileged information. If you=
are not the intended recipient, you should not disseminate, distribute or=
copy this e-mail. Please notify the sender immediately and destroy all=
copies of this message and any attachments. <br>
<br>
WARNING: Computer viruses can be transmitted via email. The recipient=
should check this email and any attachments for the presence of viruses.=
The company accepts no liability for any damage caused by any virus=
transmitted by this email.<br>
<br>
www.wipro.com<br>
</font></td></tr></table>
------_=_NextPart_001_01C75184.E7738720--

--===============1091228168==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
--===============1091228168==--
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 09:56 PM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0