Menu

#9 Request not authenticated

open
nobody
None
5
2008-04-16
2008-04-16
Anonymous
No

Hi

I am using opendiameter-1.0.7-i and was trying the connectvity like pacd->nasd->aaad .However i was unable to get the eap request authenticated.

Following is the details of the debug output .

<---aaa server receving a CER---------------------->

Waiting for incomming connection ...
(1762|3034250128) Peer Capabilities
(1762|3034250128) Hostname : localnas.localdomain2.net
(1762|3034250128) Realm : localdomain2.net
(1762|3034250128) Host IP : type=1, 0.0.0.0
(1762|3034250128) VendorId : 0
(1762|3034250128) Product Name : Open Diameter
(1762|3034250128) Orig State : 1208344742
(1762|3034250128) Supported Vendor Id : 0
(1762|3034250128) Supported Vendor Id : 1
(1762|3034250128) Auth Application Id : 1
(1762|3034250128) Auth Application Id : 2
(1762|3034250128) Auth Application Id : 5
(1762|3034250128) Auth Application Id : 2000
(1762|3034250128) Auth Application Id : 10000
(1762|3034250128) Acct Application Id : 3
(1762|3034250128) Acct Application Id : 4
(1762|3034250128) Acct Application Id : 20000
(1762|3034250128) Vendor Specific Id : (1762|3034250128) Vendor=31, Auth=1
(1762|3034250128) Vendor Specific Id : (1762|3034250128) Vendor=41, Auth=6
(1762|3034250128) Inband Sec : 0
(1762|3034250128) Firmware Ver : 1
(1762|3034250128) Sent CEA: rcode=2001

<--------------nas server receving a CEA so aaad and nasd connected---------------------->
Peer Capabilities
(1776|3044330384) Hostname : localaaa.localdomain1.net
(1776|3044330384) Realm : localdomain1.net
(1776|3044330384) Host IP : type=1, 127.0.0.1
(1776|3044330384) VendorId : 0
(1776|3044330384) Product Name : Open Diameter
(1776|3044330384) Orig State : 1208344738
(1776|3044330384) Supported Vendor Id : 0
(1776|3044330384) Supported Vendor Id : 1
(1776|3044330384) Auth Application Id : 1
(1776|3044330384) Auth Application Id : 2
(1776|3044330384) Auth Application Id : 5
(1776|3044330384) Auth Application Id : 2000
(1776|3044330384) Auth Application Id : 10000
(1776|3044330384) Acct Application Id : 3
(1776|3044330384) Acct Application Id : 4
(1776|3044330384) Acct Application Id : 20000
(1776|3044330384) Vendor Specific Id : (1776|3044330384) Vendor=31, Auth=1
(1776|3044330384) Vendor Specific Id : (1776|3044330384) Vendor=41, Acct=6
(1776|3044330384) Inband Sec : 0
(1776|3044330384) Firmware Ver : 1
(1776|3044330384) *** Local capabilities accepted by peer ***

-------------Debug output at AAA server ---------

(1836|3044739984) DestRealm(localdomain1.net) present but not ours or no supported id
(1836|3044739984) DestRealm(localdomain1.net) in routing table but no matching app Id
(1836|3044739984) Router cannot deliver message, sending back with an error
(1836|3044739984) *** Router rejected request message ***
(1836|3044739984) Message header dump
version = 1
length = 280
flags(r,p,e,t) = (1,1,0,0)
command = 268
hop-by-hop = 446378605
end-to-end = 536507062
Application id = 5
(1836|2990525328) Waiting for incomming connection ...
(1836|3076209552) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345147
(1836|3034250128) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345148
(1836|3065719696) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345151
(1836|3055229840) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345151
(1836|2980035472) Waiting for incomming connection ...
(1836|3076209552) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345154
(1836|3065719696) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345156
(1836|3044739984) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345157
(1836|2990525328) Waiting for incomming connection ...
(1836|3076209552) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345159
(1836|3034250128) Watchdog msg from [localnas.localdomain2.net .localdomain2.net], state=1208345087, time=1208345160
(1836|2938076048) Async IO, peer has closed
(1836|2938076048) Async Transport Setup Reports: Transport endpoint is not connected
(1836|2938076048) Message Collector reported [Acceptor]
(1836|3065719696) General disconnection

-----------Debug output at NAS server------------- -

(1851|3065392016) Watchdog msg from [localaaa.localdomain1.net.localdomain1.net ], state=1208345083, time=1208345145
(1851|3054902160) RxPCI: id=0 seq=0
(1851|3054902160) PAA is acting stateless
(1851|3054902160) TxPSR: id=1208821923 seq=1495979127
(1851|3054902160) RxPSA: Stateless, id=1208821923 seq=1495979127
(1851|3054902160) New session created [stateless handshake]
PassThrough: Trying a legacy method.
(1851|3044412304) Event: 3 occurring
(1851|3044412304) RxPSA: id=1208821923 seq=1495979127
(1851|3044412304) From state: OFFLINE to WAIT_SUCC_PBA
PassThrough: Trying a legacy method.
AuthIdentityStateTable: Request Prepared.
Passthrough: Request sent and timer started.
(1851|3044412304) Event: 96 occurring
(1851|3044412304) TxPAR: id=1208821923 seq=1495979128
(1851|3044412304) From state: WAIT_SUCC_PBA to OPEN
(1851|3044412304) Event: 2097157 occurring
(1851|3044412304) RxPAN: id=1208821923 seq=1495979128
(1851|3044412304) From state: OPEN to WAIT_SUCC_PBA
Passthrough: Integrity Check.
AuthIdentityStateTable: Do Identity Check.
(1851|3044412304) Routing call for [testuser@localdomain1.net] using []
******************** POLICY SCRIPT ********************
(1851|3044412304) Call routed to [diameter_eap]
(1851|3044412304) !!! WARNING !!! application sets authorization lifetime
(1851|3044412304) to be greater than session timeout, overriding to 29
(1851|3044412304) Session id=localnas.localdomain2.net .localdomain2.net;:;:;
Passthough: Integrity check.
[8] EAP-Response received from passthrough.
[8] sending DER.
(1851|3044412304) DestRealm(localdomain1.net) present but not ours or no supported id
Sent DER Message.
(1851|3033922448) **** Answer Message Error ****
(1851|3033922448) Message header dump
version = 1
length = 204
flags(r,p,e,t) = (0,1,1,0)
command = 268
hop-by-hop = 446378605
end-to-end = 536507062
Application id = 5
[8] Error was received.
[8] Result-Code=3002.
(1851|3012942736) Waiting for incomming connection ...
(1851|3002452880) Waiting for incomming connection ...
(1851|3075881872) Watchdog msg from [localaaa.localdomain1.net.localdomain1.net ], state=1208345083, time=1208345147
(1851|3033922448) Watchdog msg from [localaaa.localdomain1.net.localdomain1.net ], state=1208345083, time=1208345148
(1851|3033922448) Watchdog msg from [localaaa.localdomain1.net.localdomain1.net ], state=1208345083, time=1208345151
(1851|3044412304) Watchdog msg from [localaaa.localdomain1.net.localdomain1.net ], state=1208345083, time=1208345151

--------------Debug output at pacd client eap - request

./pacd -f config/pana_setup.xml
PACD configuration (ver 1.0.0)
PANA config file: config/pana_pac.xml
Username : testuser@localdomain1.net
Auth script : config/pana_test_auth_script
Use Archie : 0
Auth Period : 45
Thread Count : 5
General configuration
Listen Port : 3002
Dictionary : config/pana_dictionary.xml
Re-Transmission
IRT : 10
MRC : 3
MRT : 5
MRD : 360
Session-Lifetime: 10
Client configuration
PAA IP Adress : localhost
PAA Port Number : 3001
EAP Response Timeout : 3
EAP Piggyback : 1
Dictionary loaded successfully
(1870|3065822096) Event: 160 occurring
(1870|3065822096) TxPCI: id=0 seq=0
(1870|3065822096) From state: OFFLINE to OFFLINE
(1870|3034352528) Event: 2 occurring
(1870|3034352528) RxPSR: id=1208821923 seq=1495979127
(1870|3034352528) TxPSA: id=1208821923 seq=1495979127
(1870|3034352528) From state: OFFLINE to WAIT_EAP_MSG_IN_INIT
Peer: Timer Started.
(1870|3044842384) Event: 4100 occurring
(1870|3044842384) RxPAR: id=1208821923 seq=1495979128
Peer: Parse Request.
Peer: Parsing Identity request.
(1870|3044842384) From state: WAIT_EAP_MSG_IN_INIT to WAIT_SUCC_PBA
Setting username: testuser@localdomain1.net
Peer: Building Identity response.
Peer: Sent Response.
checking key availability.
(1870|3034352528) Event: 6144 occurring
(1870|3034352528) TxPAN: id=1208821923 seq=1495979128
(1870|3034352528) From state: WAIT_SUCC_PBA to WAIT_EAP_MSG_IN_INIT
Peer: Failure.
Authentication failure detected at peer
Sorry, testuser@localdomain1.net try next time !!!
(1870|3065822096) Event: 1024 occurring
StateMachine[PANA] cannot accept event 1024 at state 2.
(1870|3065822096) From state: WAIT_EAP_MSG_IN_INIT to WAIT_EAP_MSG_IN_INIT

-----------------------------------------------------------------------------------------------

Thanks

Discussion


Log in to post a comment.

Want the latest updates on software, tech news, and AI?
Get latest updates about software, tech news, and AI from SourceForge directly in your inbox once a month.