From: Martynas B. <mar...@ti...> - 2004-09-29 14:45:19
|
Hello I have Suse 9.1 with all latest patches installed. It is running on Dell Lattitude 600 notebook with Dell Wireless Wlan 1350 card inside and I am using ndiswrapper to load Windows XP drivers for this card (maybe someone know if Linux drivers are available for this card ?!). We have CISCO AP350 devices installed around, so I am trying now to configure xsupplicant for authentication. So I downloaded version 1.0.1, compiled it and made this configuration file : --- begin logfile = /var/log/xsupplicant.log network_list = all default_netname = wireless allow_interfaces = wlan0 deny_interfaces = eth0 first_auth_command = <BEGIN_COMMAND>dhcpcd %i<END_COMMAND> wireless { allow_types = eap-peap type = wireless identity = <BEGIN_ID>martynas<END_ID> eap-peap { root_cert = NONE chunk_size = 1398 random_file = /dev/urandom session_resume = yes allow_types = eap-mschapv2 eap-mschapv2 { password = <BEGIN_PASS>testing<END_PASS> } } } -- end But this is not working. The most suspicious message I see after mscahpv2 authentication is "No EAP Type Handler found for EAP Type 184!". Is this a real problem ? Maybe something else is missing ? And here is what I get after issuing "xsupplicant -i wlan0 -dasic" in log file (<skipped> instead of full certs and other packets info) : -- begin Using default config! Logfile: "/var/log/xsupplicant.log" network_list: all Default network: "halekoa75" allow_interface_list: "wlan0" deny_interface_list: "eth0" First_Auth command: "dhcpcd %i" Allow Type: PEAP Type: Wireless ID: "martynas" peap root_cert: "NONE" peap chunk: 1398 peap rand: "/dev/urandom" Session Resumption = YES PEAP Allow Type: MSCHAPV2 mschapv2 password: "testing" [INT] Called event_core_setup()! [INT] Called cardif_linux_rtnetlink_init()! [INT] Found interface : lo Invalid interface lo [INT] Found interface : eth0 [INT] Interface eth0 will be ignored! [INT] Found interface : sit0 Invalid interface sit0 [INT] Found interface : wlan0 [INT] ADDING INTERFACE : wlan0 [INT] Flags are : 06 [INT] Initializing socket for interface wlan0.. [INT] Index : 4 [INT] Allmulti is currently disabled on this device! Interface wlan0 initalized! [INT] Interface wlan0 is wireless! [INT] The card reported that the destination MAC address is now 00 40 96 58 2B 11 [INT] Userdata is NULL! [INT] Working with ESSID : halekoa75 [CONFIG] Working from config file /etc/xsupplicant.conf. [INT] No more interfaces to look at! [CONFIG] Opened socket descriptor #7 [INT] Got an RTM_NEWLINK! [INT] Working with an interface with index of 4. [INT] -- Got a new interface request. [INT] Found interface wlan0, with index of 4! (Ignored) [STATE] (global) -> DISCONNECTED [INT] Encryption appears to be disabled. We will not reset keys on interface wlan0! [STATE] Processing DISCONNECTED state. [STATE] DISCONNECTED -> CONNECTING [STATE] Processing CONNECTING state. [STATE] Sending EAPOL-Start Frame. [STATE] CONNECTING -> ACQUIRED [STATE] Processing ACQUIRED state. Connection established, authenticating... [STATE] Sending EAPOL-Response-Identification [STATE] ACQUIRED -> AUTHENTICATING) [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [STATE] Unsupported EAP type requested. (17) Sending NAK! [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication ****WARNING**** Turning off certificate verification is a *VERY* bad idea! You should not use this mode outside of basic testing, as it will compromise the security of your connection! [AUTH TYPE] PEAP Version changed to 1 [AUTH TYPE] Packet in (1) : 20 [AUTH TYPE] Setting Key Constant for PEAP v1! [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (1007) : C0 00 00 06 35 16 03 01 - 00 4A 02 00 00 46 03 01 ....5....J...F.. <skipped> [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (588) : 00 BD 05 4B 1A 25 F2 B1 - 00 02 38 30 82 02 34 30 ...K.%....80..40 <skipped> [AUTH TYPE] --- SSL_verify : depth 1 [AUTH TYPE] --- SSL_verify error : num=19:self signed certificate in certificate chain:depth=1:/C=US/O=RSA Data Security, Inc./OU=Secure Server Certification Authority [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (56) : 80 00 00 00 33 14 03 01 - 00 01 01 16 03 01 00 28 ....3..........( 3D F0 E1 66 EE 1A 10 78 - B0 AD BF 89 4D 9E 68 5E =..f...x....M.h^ 00 B7 06 87 F6 E0 54 3B - B7 77 7F 16 54 ED CB 36 ......T;.w..T..6 4F 05 8B 63 D8 AC D0 08 - O..c.... [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (38) : 00 17 03 01 00 20 AE A2 - FA AC 4A D4 62 93 C1 AA ..........J.b... 53 9E 21 21 19 0C 51 E9 - 9D 88 C8 3F AB 01 8F 73 S.!!..Q....?...s 7D 42 C5 77 64 BD }B.wd. [AUTH TYPE] Decrypted dump : 01 B3 00 05 01 .... [AUTH TYPE] Decrypted packet returned 5 byte(s) [AUTH TYPE] Doing PEAP v1! [AUTH TYPE] Inner packet : 01 B3 00 05 01 .... [AUTH TYPE] Unencrypted return frame : 02 E8 00 0D 01 61 30 31 - 39 36 39 31 39 ....martynas [AUTH TYPE] Encrypted return frame : 00 17 03 01 00 18 61 31 - B5 36 10 8A C9 F1 76 9F ......a1.6....v. 87 C7 59 4B B3 FD E0 EA - D1 E4 55 97 8D 08 17 03 ..YK......U..... 01 00 28 36 F6 56 C6 02 - CF 77 50 53 9C 33 44 9C ..(6.V...wPS.3D. 95 61 8C C3 F4 39 6D 26 - 8A F0 01 55 EC 22 DB D3 .a...9m&...U.".. 77 15 A7 4A B3 3A 02 C0 - 39 C2 35 w..J.:..9.5 [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (38) : 00 17 03 01 00 20 83 76 - B2 C5 2D 47 77 5F A9 FE .......v..-Gw_.. F7 BF 97 BD 08 98 03 53 - 7A 1A 87 FD 4B 93 D6 AA .......Sz...K... B1 B4 96 17 32 18 ....2. [AUTH TYPE] Decrypted dump : 01 E9 00 05 06 .... [AUTH TYPE] Decrypted packet returned 5 byte(s) [AUTH TYPE] Doing PEAP v1! [AUTH TYPE] Inner packet : 01 E9 00 05 06 .... [STATE] Unsupported EAP type requested. (6) Sending NAK! [AUTH TYPE] Unencrypted return frame : 02 E9 00 06 03 1A ..... [AUTH TYPE] Encrypted return frame : 00 17 03 01 00 18 94 AC - CE 81 4D AA 8E 73 FF 16 ..........M..s.. A8 DF 59 35 A9 6D 28 9A - 4C B2 13 FA 7C 2C 17 03 ..Y5.m(.L...|,.. 01 00 20 08 E6 36 95 F8 - DD 62 73 C0 5A E8 16 08 .....6...bs.Z... 15 12 83 5D C3 C0 29 FB - 94 54 95 E3 7A 7F 55 FD ...]..)..T..z.U. 93 68 23 .h# [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (62) : 00 17 03 01 00 38 32 87 - 14 03 89 8C 56 61 5A 47 .....82.....VaZG 52 E1 00 9A 07 A0 CD 61 - 15 95 2E 79 0F 11 86 20 R......a...y.... FC 3A E9 27 97 4E 37 80 - 4F D1 CE C1 EC 6B 03 8E .:.'.N7.O....k.. 92 77 E0 D3 58 9F F4 4F - 8E 00 DE FD CC 70 .w..X..O.....p [AUTH TYPE] Decrypted dump : 01 EA 00 21 1A 01 EA 00 - 1C 10 AB F0 3B E4 93 7A ...!........;..z 45 1E 84 72 28 0F E2 2F - 95 4D 44 45 55 53 31 32 E..r(../.MDEUS12 35 5 [AUTH TYPE] Decrypted packet returned 33 byte(s) [AUTH TYPE] Doing PEAP v1! [AUTH TYPE] Inner packet : 01 EA 00 21 1A 01 EA 00 - 1C 10 AB F0 3B E4 93 7A ...!........;..z 45 1E 84 72 28 0F E2 2F - 95 4D 44 45 55 53 31 32 E..r(../.MDEUS12 35 5 [AUTH TYPE] (EAP-MSCHAPv2) Challenge [AUTH TYPE] (EAP-MS-CHAPv2) ID : EA [AUTH TYPE] Authenticator Challenge : AB F0 3B E4 93 7A 45 1E 84 72 28 0F E2 2F 95 4D [AUTH TYPE] Generated PeerChallenge : 83 C3 44 6F A5 81 31 C2 92 DA 52 39 66 7B 13 61 [AUTH TYPE] PeerChallenge : 83 C3 44 6F A5 81 31 C2 [AUTH TYPE] AuthenticatorChallenge : AB F0 3B E4 93 7A 45 1E [AUTH TYPE] Username : martynas [AUTH TYPE] Challenge : 60 70 6A 5E A3 46 8D 75 [AUTH TYPE] PasswordHash : 2D 7A A0 38 D1 B5 60 44 2F AB EC AD F3 A8 CF 9D [AUTH TYPE] Response : E6 B4 B0 2D DC 0E 8A 9E E2 19 97 D1 A4 5B A3 18 EC 72 45 29 F5 96 3F FB [AUTH TYPE] myvars->NtResponse = E6 B4 B0 2D DC 0E 8A 9E E2 19 97 D1 A4 5B A3 18 EC 72 45 29 F5 96 3F FB [AUTH TYPE] response->NT_Response = E6 B4 B0 2D DC 0E 8A 9E E2 19 97 D1 A4 5B A3 18 EC 72 45 29 F5 96 3F FB [AUTH TYPE] Unencrypted return frame : 02 EA 00 43 1A 02 EA 00 - 3E 31 83 C3 44 6F A5 81 ...C....>1..Do.. 31 C2 92 DA 52 39 66 7B - 13 61 00 00 00 00 00 00 1...R9f{.a...... 00 00 E6 B4 B0 2D DC 0E - 8A 9E E2 19 97 D1 A4 5B .....-.........[ A3 18 EC 72 45 29 F5 96 - 3F FB 00 61 30 31 39 36 ...rE)..?..a0196 39 31 39 919 [AUTH TYPE] Encrypted return frame : 00 17 03 01 00 18 FA 6C - 8B 19 8B 2E 83 2B 30 90 .......l.....+0. <skipped> [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (38) : 00 17 03 01 00 20 DC 4B - 13 D0 DA 27 CE F8 1E F7 .......K...'.... <skipped> [AUTH TYPE] Decrypted dump : 04 EB 00 04 ... [AUTH TYPE] Decrypted packet returned 4 byte(s) [AUTH TYPE] Doing PEAP v1! [AUTH TYPE] Inner packet : 04 EB 00 04 ... No EAP Type Handler found for EAP Type 184! [AUTH TYPE] Nothing returned from PEAP! [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] No data in frame, returning. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] No data in frame, returning. [STATE] Sending EAPOL-Response-Authentication <many of these messages are comming every second> [STATE] Unsupported EAP type requested. (1) Sending NAK! [STATE] AUTHENTICATING -> ACQUIRED [STATE] Processing ACQUIRED state. Connection established, authenticating... [STATE] Sending EAPOL-Response-Identification [INT] The card reported that the destination MAC address is now 00 40 96 54 51 42 [INT] Encryption appears to be disabled. We will not reset keys on interface wlan0! [CONFIG] MAC address changed! Updating config! [CONFIG] Working from config file /etc/xsupplicant.conf. [INT] The card reported that the destination MAC address is now 00 0C 30 E4 8F 8A [INT] Encryption appears to be disabled. We will not reset keys on interface wlan0! [CONFIG] MAC address changed! Updating config! [CONFIG] Working from config file /etc/xsupplicant.conf. [STATE] Processing ACQUIRED state. Connection established, authenticating... [STATE] Sending EAPOL-Response-Identification [STATE] ACQUIRED -> AUTHENTICATING) [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [STATE] Unsupported EAP type requested. (17) Sending NAK! [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication [AUTH TYPE] Packet in (1) : 20 [AUTH TYPE] Got session information, trying to resume session! [AUTH TYPE] Attempting to resume session... [STATE] Processing AUTHENTICATING state. [STATE] Sending EAPOL-Response-Authentication --- end What is wrong ? Thank you for your tips ! Martynas |