Radius Passowrd error
I am having the following issue with authentication to MS IAS. I get connected to the ASA no problem. I then get asked for my credentials, and I add my domain user and password. I receive unknown username or password error in the event log of the Radius server. This si a first time install and I am so close. I must either be missing something or have misconfigured something. Any help would be appreciated!
Event Type: Failure Audit
Event Source: Security
Event Category: Logon/Logoff
Event ID: 529
Date: 9/19/2007
Time: 1:11:02 AM
User: NT AUTHORITY\SYSTEM
Computer: SERVERNAME
Description:
Logon Failure:
Reason: Unknown user name or bad password
User Name: ndorobek
Domain: MYDOMAIN
Logon Type: 3
Logon Process: IAS
Authentication Package: MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
Workstation Name:
Caller User Name: SERVERNAME$
Caller Domain: MYDOMAIN
Caller Logon ID: (0x0,0x3E7)
Caller Process ID: 824
Transited Services: -
Source Network Address: -
Source Port: -
Hi,
Might have something to with the selected authentication protocols on the IAS server. See http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2030/products_configuration_example09186a00806de37e.shtml
Also, you have to enable dial-in for the users in Active Directory and 'grant remote access' in the IAS policy.
Regards, Frank
Similar Messages
-
RADIUS Authentication Error Across the Subnet
Hi Guyz
I have configured Microsoft Server 2012 R2 as a RADIUS for Cisco IOS Devices
Server IP Address : 10.95.6.12
Router IP Address Fa 0/0.192 ---->>> 192.193.194.195
Router IP Address Fa 0/0.6 --->>> 10.95.6.1
Switch IP Address VLAN 192 ---->>> 192.193.194.2010.95.6.11
Switch IP Address VLAN 6 ---->>> 10.95.6.11
When i access the Cisco Devices RADIUS CLIENT with 10.95.6.x Subnet, It works fine
When i access the Cisco Devices through RADIUS CLIENT 192.193.194.x Subnet, It does not pass through the RADIUS Authentication.
Attached in the Picture i can not access the 192.193.194.20 Device but I can access 10.95.6.1 Device. As soon as I change the IP Address 10.95.6.11 I can access the Device.
Ping is successful across the Routers / Switches and Server as well. Below is unsuccessful debug details as well:
===
Home_Switch#
01:52:30: RADIUS/ENCODE(00000008): ask "Password: "
Home_Switch#
01:52:41: RADIUS/ENCODE(00000008):Orig. component type = EXEC
01:52:41: RADIUS: AAA Unsupported Attr: interface [171] 4
01:52:41: RADIUS: 74 74 [ tt]
01:52:41: RADIUS/ENCODE(00000008): dropping service type, "radius-server attribute 6 on-for-login-auth" is off
01:52:41: RADIUS(00000008): Config NAS IP: 0.0.0.0
01:52:41: RADIUS/ENCODE(00000008): acct_session_id: 8
01:52:41: RADIUS(00000008): sending
01:52:41: RADIUS/ENCODE: Best Local IP-Address 10.95.6.11 for Radius-Server 10.95.6.12
01:52:41: RADIUS(00000008): Send Access-Request to 10.95.6.12:1812 id 1645/6, len 85
Home_Switch#
01:52:41: RADIUS: authenticator 95 FB 3F FE 79 BB AA D6 - C9 26 F4 EC 95 32 80 06
01:52:41: RADIUS: User-Name [1] 7 "cisco"
01:52:41: RADIUS: User-Password [2] 18 *
01:52:41: RADIUS: NAS-Port [5] 6 2
01:52:41: RADIUS: NAS-Port-Id [87] 6 "tty2"
01:52:41: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
01:52:41: RADIUS: Calling-Station-Id [31] 16 "192.193.194.50"
01:52:41: RADIUS: NAS-IP-Address [4] 6 10.95.6.11
01:52:41: RADIUS(00000008): Started 5 sec timeout
Home_Switch#
01:52:46: RADIUS(00000008): Request timed out
01:52:46: RADIUS: Retransmit to (10.95.6.12:1812,1813) for id 1645/6
01:52:46: RADIUS(00000008): Started 5 sec timeout
Home_Switch#
===
Any help will really appreciate.Duplicate posts.
Go here: http://supportforums.cisco.com/discussion/12154866/radius-authentication-error-across-subnet -
Authentication via RADIUS : MSCHAPv2 Error 691
Hello All,
I am working on setting up authentication into an Acme Packet Net-Net 3820 (SBC) via RADIUS. The accounting side of things is working just fine with no issues. The authentication side of things is another matter. I can see from a packet capture that the access-request
messages are in fact getting to the RADIUS server at which point the RADIUS server starts communicating with the domain controllers. I then see the chain of communication going back to the RADIUS and then finally back to the SBC. The problem is the response
I get back is always an access-reject message with a reason code of 16 (Authentication failed due to a user credentials mismatch. Either the user name provided does not match an existing user account or the password was incorrect). This is confirmed by looking
at the security event logs where I can see events 4625 and 6273. See the events below (Note: The names and IPs have been changed to protect the innocent):
Event ID: 6273
Network Policy Server denied access to a user.
Contact the Network Policy Server administrator for more information.
User:
Security ID:
NULL SID
Account Name:
real_username
Account Domain:
real_domain
Fully Qualified Account Name:
real_domain\real_username
Client Machine:
Security ID:
NULL SID
Account Name:
Fully Qualified Account Name:
OS-Version:
Called Station Identifier:
Calling Station Identifier:
NAS:
NAS IPv4 Address:
10.0.0.10
NAS IPv6 Address:
NAS Identifier:
radius1.real_domain
NAS Port-Type:
NAS Port:
101451540
RADIUS Client:
Client Friendly Name:
sbc1mgmt
Client IP Address:
10.0.0.10
Authentication Details:
Connection Request Policy Name:
SBC Authentication
Network Policy Name:
Authentication Provider:
Windows
Authentication Server:
RADIUS1.real_domain
Authentication Type:
MS-CHAPv2
EAP Type:
Account Session Identifier:
Logging Results:
Accounting information was written to the SQL data store and the local log file.
Reason Code:
16
Reason:
Authentication failed due to a user credentials mismatch. Either the user name provided does not map to an existing user account or the password was incorrect.
Event ID: 4625
An account failed to log on.
Subject:
Security ID:
SYSTEM
Account Name:
RADIUS1$
Account Domain:
REAL_DOMAIN
Logon ID:
0x3E7
Logon Type: 3
Account For Which Logon Failed:
Security ID:
NULL SID
Account Name:
real_username
Account Domain:
REAL_DOMAIN
Failure Information:
Failure Reason:
Unknown user name or bad password.
Status:
0xC000006D
Sub Status:
0xC000006A
Process Information:
Caller Process ID:
0x2cc
Caller Process Name:
C:\Windows\System32\svchost.exe
Network Information:
Workstation Name:
Source Network Address:
Source Port:
Detailed Authentication Information:
Logon Process:
IAS
Authentication Package:
MICROSOFT_AUTHENTICATION_PACKAGE_V1_0
Transited Services:
Package Name (NTLM only):
Key Length:
0
This event is generated when a logon request fails. It is generated on the computer where access was attempted.
The Subject fields indicate the account on the local system which requested the logon. This is most commonly a service such as the Server service, or a local process such as Winlogon.exe or Services.exe.
The Logon Type field indicates the kind of logon that was requested. The most common types are 2 (interactive) and 3 (network).
The Process Information fields indicate which account and process on the system requested the logon.
The Network Information fields indicate where a remote logon request originated. Workstation name is not always available and may be left blank in some cases.
The authentication information fields provide detailed information about this specific logon request.
- Transited services indicate which intermediate services have participated in this logon request.
- Package name indicates which sub-protocol was used among the NTLM protocols.
- Key length indicates the length of the generated session key. This will be 0 if no session key was requested.
So at first glance it would seem that the issue is merely a case of an invalid username or mismatched password. This is further confirmed in the packet capture where I can see the MSCHAPv2 response has an error code of 691 (Access denied because username or
password, or both, are not valid on the domain). The thing is I know I am using a valid username and I have tried many usernames including new ones I created just for troubleshooting. I don't know how many times I have reset the password in an attempt to ensure
it is not a mismatch password. I have even made sure to use passwords that are fairly short and contain only letters to ensure there was no terminal encoding issues (we connect to the SBC via SSH clients). I have also done this same thing with the shared secret
used during communication between the SBC and the RADIUS server. I have tried prefixing the username with the domain name at login (though I don't think that should be necessary). I have also tried using the full UPN of the user to login. I have tried several
RADIUS testing clients (NTRadPing, RadiusTest, etc.), but they either don't support MSCHAPv2 or only support EAP-MSCHAPv2. I have even created my own client using PHP's PECL RADIUS module. Still it always seems to fail with the MSCHAPv2 authentication with
an error code of 691. Does anyone have any ideas as to why I always get an invalid username or bad password response when I have done everything possible to ensure that is not the case?
Here are the specs for our RADIUS configuration:
Windows Server 2012 R2
SQL Server 2012 Back End Database for accounting.
The server has been authorized on the domain and is a member of the "RAS and IAS Servers" group. For which that group does have access to the accounts we are testing with.
The accounts we are testing with do have the "Control access through NPS Network Policy" option checked under their "Dial-in" property tab.
RADIUS clients configured to simply match on the IP address which you can see from the events above that it is applying the client friendly name.
Connection Request Policy: The "SBC Authenication" policy is being applied as seen above. The only condition is a regex expression that does successfully match the friendly name.
Network Policy: As seen in events above, none are getting applied. For troubleshooting purposes I have created a Network Policy that is set to "1" for the processing order and its only condition is a Day and Time Restriction currently set to any
time, any day.
The authentication method is set to only MSCHAPv2 or MSCHAPv2 (User can change password after it has expired). I have tried adding this to just the Network Policy and I have also tried adding this to the Connection Request Policy and setting it to override
the authentication method of the Network Policy.
We do have other RADIUS servers in our domain that use PEAP to authenticate wireless clients and they all work fine. However, we need this to work with MSCHAPv2 only (No EAP).
All other configurations are set to the defaults.
The only other things of note to consider is the fact that in the events above you can see that the Security ID is "NULL SID". Now I know this is common especially among failed logons but given that this issue is stating an invalid username or
bad password, perhaps it matters in this case. Also, this server has been rebuilt using the same computer account in Active Directory. I do not know if it would have worked before the rebuild. Essentially we built this server and only got as far as authorizing
the server to the domain and adding SQL when we decided to separate out the SQL role onto another server. Rather than uninstalling SQL we just rebuilt the machine. However, before reinstalling Windows I did do a reset on the computer account. I don't think
this should matter but thought I would point it out if there is some weird quirk where reusing the same SID of a previously authorized NPS server would cause an issue.
All in all it is a fairly basic setup and hopefully I have provided enough information for someone to get an idea of what might be going on. I hope this was the right forum to post this too, I figured there would be a higher number of RADIUS experts here than
any of the other categories. Apologies if my understanding of this seems a bit basic, after all, when it comes to RADIUS servers I guess you could say I'm the new guy here.Update 1:
In an attempt to further troubleshoot this issue I have tried bringing up additional servers for testing. Here are the additional tests I have performed.
Multiple Domains
I have now tried this in 3 different isolated domains. Both our test and production domains as well as my private home domain which has very little in the way of customizations aside from the modifications made for Exchange and ConfigMgr. All have the same
results described above.
VPN Service
Using Windows Server 2012 R2 we brought up a separate server to run a standard VPN setup. The intent was to see if we could use RADIUS authentication with the VPN and if that worked we would know the issue is with the SBCs. However, before we could even
configure it to use RADIUS we just attempted to make sure it worked with standard Windows Authentication on the local VPN server. Interestingly, it too fails with the same events getting logged as the RADIUS servers. The client machine being a Windows 8.1
workstation. Again I point out that we have working RADIUS servers used specifically for our wireless environment. The only difference between those RADIUS servers and the ones I am having problems with is that the working wireless servers are using PEAP instead
of MSCHAPv2.
FreeRADIUS
Now I'm no Linux guru but I believe I have it up and running. I am able to use ntlm_auth to authenticate users when logged on to the console. However, when the radiusd service tries to use ntlm_auth to do essentially the same thing it fails and returns the
same message I've been getting with the Windows server (E=691). I have the radiusd service running in debug mode so I can see more of what is going on. I can post the debug info I am getting if requested. The lines I am seeing of particular interest however
are as follows:
(1) ERROR: mschap : Program returned code (1) and output 'Logon failure (0xc000006d)'
(1) mschap : External script failed.
(1) ERROR: mschap : External script says: Logon Failure (0xc000006d)
(1) ERROR: mschap : MS-CHAP2-Response is incorrect
The thing to note here is that while we are essentially still getting a "wrong password" message, the actual status code (0xc000006d) is slightly different than what I was getting on the Windows Servers which was (0xc000006a). From this document
you can see what these codes mean:
NTSTATUS values . The good thing about this FreeRADIUS server is that I can see all of the challenge responses when it is in debug mode. So if I can wrap my head around how a MSCHAPv2 response is computed I can compare it to see if this is simply a miscomputed
challenge response. Update: Was just noticing that the 6a code is just the sub-status code for the 6d code. So nothing different from the Windows Servers, I still wonder if there is a computation error with the challenge responses though.
Currently, I am working on bringing up a Windows Server 2008 R2 instance of a RADIUS server to see if that helps at all. However, I would be surprised if something with the service broke between W2K8 R2 and W2K12 R2 without anyone noticing until now. If this
doesn't work I may have to open a case with Microsoft. Update: Same results with W2K8 R2. -
Unknown RADIUS Client error again with NMAS RADIUS
I had this problem before and it seemed to be related to the FDN being
assigned at the container level. Now (for some reason) it's come back
and the previous fix doesn't work.
Running NW 6.5SP5
NMAS.NLM ver 2.65
RADIUS.NLM ver 4.15
GAMS.NLM ver 1.30
NMASGPXY.NLM ver 1.04
When I use NTRADPING to query the RADIUS server, it times out. The
following is the debug output from RADIUS:
[2006-05-08 05:27:21 PM] 2) [(ip) 172.22.105.81:1944], Received 46
Bytes (Access-Request (1))
[2006-05-08 05:27:21 PM] [(total=2) (p=1) (d=0) (r=0) (acc=0)
(rej=0)]
[2006-05-08 05:27:21 PM] <4> Done GetNextMessage [(ip)
172.22.105.81:1944]: time:1608203
[2006-05-08 05:27:21 PM] -------- START : (Access-Request (1)) [(ip)
172.22.105.81:1944]: time:891983657---
[2006-05-08 05:27:21 PM] CACHE:
CacheDomainListExist(testdas1.radius.mc), using cache
[2006-05-08 05:27:21 PM] AuthRequestHandler(), Calling
RequestHandler.
[2006-05-08 05:27:21 PM] CACHE:
CacheReadSecretForNASAddress(testdas1.radius.mc), using cache
[2006-05-08 05:27:21 PM] HandleLocalRequest(),
CacheReadSecretForNASAddress failed, no such RADIUS client (-822),
Packet Dropped
[2006-05-08 05:27:21 PM] -------- END : (Access-Request (1)) [(ip)
172.22.105.81:1944]: time:891983668---
However, the client is configured in the DAS as a generic radius
client.
This is a newly created DAS and Profile for test purposes. The user has
been configured for this DAS and profile but the properties have NOT
been added to avoid conflict.
On a RADIUS REFRESHCACHE, the debug output is as follows:
[2006-05-08 05:27:03 PM] Cacher: Console initiated rebuild of cache
[2006-05-08 05:27:03 PM] (->)Cacher:
NWDSReadObjectInfo(testdas1.radius.mc), succeeded, time:3
[2006-05-08 05:27:03 PM] Cacher: Rebuilding cache, mod time different,
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:D AS Version)
succeeded, time:5
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:P assword Policy)
failed, no such attribute (-603), time:4
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:C ommon Name
Resolution) succeeded, time:4
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:C oncurrent Limit)
failed, no such attribute (-603), time:3
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:I nterim Accting
Timeout) failed, no such attribute (-603), time:3
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:A ged Interval)
failed, no such attribute (-603), time:3
[2006-05-08 05:27:03 PM]
(->)NDSReadData:NWDSRead(testdas1.radius.mc,RADIUS:M aximum History
Record) failed, no such attribute (-603), time:4
[2006-05-08 05:27:03 PM] CACHE: Use Netware Password for
"testdas1.radius.mc": Enabled
[2006-05-08 05:27:03 PM] CACHE: CN Login for "testdas1.radius.mc":
Enabled
[2006-05-08 05:27:03 PM] CACHE: Concurrent Limit for
"testdas1.radius.mc": 0x80000000
[2006-05-08 05:27:03 PM] CACHE: Interim Timeout for
"testdas1.radius.mc": 10 minutes
[2006-05-08 05:27:03 PM] CACHE: Interval For Aging for
"testdas1.radius.mc": 7 days
[2006-05-08 05:27:03 PM] CACHE: Max History Record for
"testdas1.radius.mc": 30
[2006-05-08 05:27:03 PM] tag extracted: 172.22.105.81, size: 14,
tagLength: 28
[2006-05-08 05:27:03 PM] (->)NDSSetUpClientTable(testdas1.radius.mc)
failed, no such entry (-601)
[2006-05-08 05:27:03 PM] Cache: Error from NDSSetUpClientTable: failed,
no such entry (-601)
[2006-05-08 05:27:03 PM] Cache: Successfully set up client table
[2006-05-08 05:27:03 PM] Cache: Successfully set up context list
[2006-05-08 05:27:04 PM] NDSSetUpDomainList(testdas1.radius.mc),
Invalid Proxy Authentication Secret entry found, type = 00000000,
Skipped, failed, no such entry (-601)
[2006-05-08 05:27:04 PM] (->)NDSSetUpDomainList(), failed, -826
(0xfffffcc6)
[2006-05-08 05:27:04 PM] NDSSetUpDomainList failed. Error: failed,
-826 (0xfffffcc6)
[2006-05-08 05:27:04 PM] Cache: Successfully set up search domain list
[2006-05-08 05:27:04 PM] Cache: Successfully build context list
[2006-05-08 05:27:04 PM] CACHE: Cache reloaded at [2006-05-08
05:27:04 PM], current reload count is 4
[2006-05-08 05:27:04 PM] Cacher: RefreshCache(), succeeded
[2006-05-08 05:27:04 PM] CACHE: Cache loaded at [2006-05-08 05:26:17
PM] has been discarded , current reload count is 4
Suggestions?
WayneFixed by updating eDir to 8.7.3.8 and applying ssp201
Regards,
Wayne -
Hello,
I have installed and reinstalled Radius but couldn't connect any computer
Reason Code: 23
Reason: An error occurred during the Network Policy Server use of the Extensible Authentication Protocol (EAP). Check EAP log files for EAP errors.
Schannel
The following fatal alert was generated: 20. The internal error state is 960.
ThanksHi,
Based on the events which you provided, it seems that the two events were related to certificate. If you have installed a certificate on the RADIUS server, a possible cause is that the certificate has something wrong. So please check the configuration of
certificate in your RADIUS server and client.
And for a better analysis about this issue, please provide more details about the configuration in your environment. Such as, what are you deploying with RADIUS, the operating system of your RADIUS server
and RADIUS client, the network policy and other configurations in the NPS, the configuration of the client etc.
Here are some related threads and articles with similar events.
802.1x Authentication fails, Reason Code 23
https://social.technet.microsoft.com/Forums/windowsserver/en-US/07e14473-b597-4060-8fab-39d443cccb07/8021x-authentication-fails-reason-code-23?forum=winserverNAP
Event ID 6273 — NPS Authentication Status
http://technet.microsoft.com/en-us/library/cc735399(WS.10).aspx
The client could not be authenticated because the Extensible Authentication Protocol (EAP) Type cannot be processed by the server.
https://social.technet.microsoft.com/Forums/en-US/5fb22134-c12b-4ff1-8764-b10aa37c8b9c/the-client-could-not-be-authenticated-because-the-extensible-authentication-protocol-eap-type?forum=winserverNAP
Best Regards,
Tina -
VPN3k Radius authentication Error
I dont know what i am doing wrong, but everytime i try to setup a VPN3k for radius authentication get the following error:
An error has occurred while attempting to perform the operation.
Authentication Error: No active server found
The server is correctly configured on the vpn3k and also i setup the vpn3k as a client to ACS. The radius server works fine with any other routers.
Can anybody please share some tips.
ThanksI can suggest several things to check about this issue. Are you sure that you have correct IP connectivity between the devices? (check this by pinging from the vpn3k to the server and ping from the server to the vpn3k) Are you sure that you have configured the correct key for cummunication from the vpn3k to the server? Does the server see any connection attempt from the vpn3k? (check logs and failed attempt reports on the server) Is there any access list on any router along the path from the vpn3k to the server which might be denying the request or the response?
HTH
Rick -
We are running Novell Netware 6.0 SP4 and eDirectory 8.6.2. We have set up
iChain 2.3 with the included NMAS and RADIUS services. iChain with NDS
password authentication works properly. Now we are trying to add token
authentication, and it is not working. The RADIUS screen keeps showing
"Access Request Dropped", "<ip address>, <user>, Unknown RADIUS client".
I have turned on debug mode, refreshed the cache, tried logging in again,
and checked the debug file. The error I am getting I have not seen
referenced in previous newsgroup posts. The important section shows this:
Context Lookup List set to:
[2004-08-05 09:42:21 AM] 1) DEN.RJL
[2004-08-05 09:42:21 AM] 2) RJL
[2004-08-05 09:42:21 AM] Number of contexts = 2
[2004-08-05 09:42:21 AM] tag extracted: 10.1.1.242, size: 11, tagLength: 22
[2004-08-05 09:42:21 AM] (->)NDSSetUpClientTable(DAS_RJL.RJL) failed, no
such entry (-601)
[2004-08-05 09:42:21 AM] Cache: Error from NDSSetUpClientTable: failed, no
such entry (-601)
[2004-08-05 09:42:21 AM] Cache: Successfully set up client table
It looks like it is not reading the client table properly, but I don't know
how to fix it. We have recreated the DAS object, removed and re-added the
client address in the DAS object, etc.
If anyone has any ideas on what else we can try, I would really appreciate
it. Thanks.You should always administer NMAS from a Windows workstation, Unfortunately
you can't administer NMAS, and therefore NMAS RADIUS, on any other platform
right now. The NMAS ConsoleOne snapins make native calls to nmaswrap.dll,
and this module is only available on Windows.
You can map a drive to your server from a Windows box and run ConsoleOne
from the mapped drive to see if this works. However, for best results with
RADIUS, you will want to install ConsoleOne locally on a Windows box. When
run over a mapped drive, the RADIUS snapin can take a very long time (5-15
minutes in my experience) to load the RADIUS attribute file.
You mentioned that you've been running ConsoleOne from a workstation, so I
assume that you've tried setting the DAS client information from a Windows
box already. If you have not tried this yet, then please do so.
The -601 you're getting from NMAS_GetLoginConfig is interesting.
Unfortunately this method is implemented in NMAS.NLM, which is maintained by
a different team, so I'm not sure how much more help I can provide with
this. However, I do have a few ideas:
1) When RADIUS calls NMAS_GetLoginConfig, its asking NMAS to read encrypted
data that is stored in attributes on the DAS object. If I remember
correctly, NMAS.NLM cannot go off the box when it does this. Does your
RADIUS server have a local replica that contains the DAS object? If it does
not, then this might be your problem.
2) If putting the DAS in a local replica does not work, then a DS Trace with
the NMAS and Resolve Name options turned on may provide some insight. (I
can't remember if NMAS is a DS Trace option in eDir 8.6 - if you don't see
the NMAS option, then don't worry about it.) Start DSTrace while RADIUS is
running and issue a "radius refreshcache" command like you did before.
If neither of the above suggestions is helpful, then tell the support
engineer you're working with that the -601 error is coming from
NMAS_GetLoginConfig and which version of NMAS.NLM you have. Please also tell
the support engineer that you've been working with me (Scott Kiester) on
this, and that he/she may call me they have any questions.
>>> Stephen Taylor<[email protected]> 08/06/04 12:38 PM >>>
Hi Scott,
Thank you for the follow-up. Based on suggestions from some of your other
posts, I had already run ConsoleOne with the debug window, and I did not
see
any errors when I added a DAS client. I ran the SDIDiag utility and went
through the three recommended steps. There were no errors, and the tree key
looked the same on all our servers. I did not know about the NMAS log file.
I followed your directions, and this is all that the log file shows:
0: Screen and file output started at Fri Aug 6 10:49:53 2004
GetLoginConfig: -601
NMAS_GetLoginConfig: -601
Based on a couple of other posts, I decided to try deleting the DAS object
and recreating it using ConsoleOne from the NMAS server instead of from a
workstation. It asks me for the password when creating the object, then
immediately abends the serve and locks up ConsoleOne. This has happened
three times now, even after reloading the snap-ins. I don't know what to
try
next. We have run dsrepair and it runs cleanly.
"Scott Kiester" <[email protected]> wrote in message
news:_uOQc.4698$8%[email protected]...
> Hi Stephen,
>
> Based on the log snippet that you posted, it appears that an NMAS call is
> failing and returning the -601 error. NMAS RADIUS makes a call to NMAS to
> obtain the client shared secrets because NMAS will encrypt them before
> storing them in eDirectory. It looks like your server is able to read the
> client IP address off of the DAS object, but is unable to obtain the
> corresponding shared secret from NMAS.
>
> I can think of a couple of things that might cause this:
>
> 1) Perhaps ConsoleOne is not storing the shared secret. Unfortunately,
the
> ConsoleOne snapin will not report errors it encounters while storing
entries
> in the client table. ConsoleOne must make an NMAS call to store the
shared
> secret, and if this call fails it will not report the error. You can
usually
> tell if this call failed by closing the DAS "Properties" dialog and
> re-opening it after adding a new entry. If your new entry is not there
when
> the dialog is re-opened, then the call failed.
>
> To find out if this call is failing, please start ConsoleOne with the
> following command line: "consoleone -debug -windowout". This will make
> ConsoleOne display a debug window in the top-left portion of your screen.
If
> an error occurs when you add a DAS client, you will see an error code and
> stack dump in this window. If this happens, please post the error code
and
> stack dump.
>
> Problems with the tree key are the most common reason for this call to
fail.
> You can resolve tree key issues using the SDIDIAG utility, which is
> available from the support site.
>
> 2) It is unusual to get a -601 ("object not found" - this is _not_ the
same
> as "attribute not found") error when RADIUS attempts to make this NMAS
call.
> RADIUS must set up and log in a new DS context before it calls NMAS here.
> It's possible that this is where the failure is, but I think it's
unlikely.
> The -601 error is probably coming from the NMAS call. If you determine
that
> ConsoleOne is storing this data properly using the instructions in step
1,
> then it would be helpful to see a log file from NMAS when this call is
made.
> To get this log file, please do the following:
>
> A) Load RADIUS and provide the DAS name and password
> B) At the server console, type "nmasmon * sys:\etc\nmasmon.log"
> C) At the server console, type "radius refreshcache"
> D) At the server console, type "unload nmasmon"
>
> This will cause NMAS log information to be written to
sys:\etc\nmasmon.log.
> Please post this file here, or send it to me at [email protected].
> -
Passowrd error many times?...
Evening
I have been reset my password 4 times and its keep saying errors...i cant use Itune from iphone and pc itune with this errors password??. the message is "your ID itune is error or your password error try later" and i keep do i forgot my password and when i log there its work , when i log in itune its say wrong... whats wrong??Mamz wrote:
whats wrong??
The incorrect user ID or password is being entered.
Honestly the posting makes very little sense in English.
You might have better luck posting in your native language. -
Radius authentication error.
I have radius configured to authentication a cisco switch. The ACS is V5.3. The login worked fine, but the enable doesn’t work. It came back saying “
22056 Subject not found in the applicable identity store(s).
Any idea?
Thanks,
HanHi Han,
A first hint would be to check if the authentication protocol you are using (PAP, CHAP, MS-CHAPv1/2, etc.) is compatible with the database configured on ACS:
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2.1/User_Guide/Overvw.html#wpxref846
This table is from the ACS 4.2.1 configuration guide, but it is generally true for all types of databases and ACS versions.
Regards,
Fede
If this helps you and/or answers your question please mark the question as "answered" and/or rate it, so other users can easily find it. -
Unknown radius Client, Netware 6.0 HELP project needs assistance!
Radius help!
Unknown Radius Client error
using netware 6.0
Have tried using freeradius but no luck there also.
[2005-04-05 12:16:30 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:16:30 PM] Parameter count = 9
[2005-04-05 12:16:30 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:16:30 PM] argv[1] = name=radiusserver
[2005-04-05 12:16:30 PM] argv[3] = THREADS=20
[2005-04-05 12:16:30 PM] argv[4] = auththreads=10
[2005-04-05 12:16:30 PM] argv[5] = port=1645
[2005-04-05 12:16:30 PM] argv[6] = serverType=authentication
[2005-04-05 12:16:30 PM] argv[7] = Tree=Pine_Tech
[2005-04-05 12:16:30 PM] argv[8] = affinity=ogema
[2005-04-05 12:16:30 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:16:30 PM] Login Name = "<null>"
[2005-04-05 12:16:30 PM] Name = "radiusserver"
[2005-04-05 12:16:30 PM] Workers = 20
[2005-04-05 12:16:30 PM] Port = 1645
[2005-04-05 12:16:30 PM] Error encountered = 0
[2005-04-05 12:16:30 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:16:30 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:16:30 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:16:30 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:16:30 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:16:30 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:16:30 PM] Got RollOver from registry, "daily"
[2005-04-05 12:16:30 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:16:30 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:28:20 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:28:20 PM] Parameter count = 12
[2005-04-05 12:28:20 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:28:20 PM] argv[1] =
name=CN=radiusserver.OU=CIS.O=Pine_tech
[2005-04-05 12:28:20 PM] argv[2] = Login
[2005-04-05 12:28:20 PM] argv[3] = name
[2005-04-05 12:28:20 PM] argv[4] = used
[2005-04-05 12:28:20 PM] argv[5] = =CN=radiusserver.OU=CIS.O=Pine_tech
[2005-04-05 12:28:20 PM] argv[7] = Tree=Pine_Tech
[2005-04-05 12:28:20 PM] argv[8] = THREADS=20
[2005-04-05 12:28:20 PM] argv[9] = auththreads=10
[2005-04-05 12:28:20 PM] argv[10] = port=1645
[2005-04-05 12:28:20 PM] argv[11] = affinity=ogema
[2005-04-05 12:28:20 PM] Tree Name = "<null>"
[2005-04-05 12:28:20 PM] Login Name = "<null>"
[2005-04-05 12:28:20 PM] Name = "CN=radiusserver.OU=CIS.O=Pine_tech"
[2005-04-05 12:28:20 PM] Workers = 0
[2005-04-05 12:28:20 PM] Port = 0
[2005-04-05 12:28:20 PM] Error encountered = -809
[2005-04-05 12:29:43 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:29:43 PM] Parameter count = 8
[2005-04-05 12:29:43 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:29:43 PM] argv[1] =
name=CN=radiusserver.OU=CIS.O=Pine_tech
[2005-04-05 12:29:43 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:29:43 PM] argv[4] = THREADS=20
[2005-04-05 12:29:43 PM] argv[5] = auththreads=10
[2005-04-05 12:29:43 PM] argv[6] = port=1645
[2005-04-05 12:29:43 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:29:43 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:29:43 PM] Login Name = "<null>"
[2005-04-05 12:29:43 PM] Name = "CN=radiusserver.OU=CIS.O=Pine_tech"
[2005-04-05 12:29:43 PM] Workers = 20
[2005-04-05 12:29:43 PM] Port = 1645
[2005-04-05 12:29:43 PM] Error encountered = 0
[2005-04-05 12:29:43 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:29:43 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:29:43 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:29:43 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:29:43 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:29:43 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:29:43 PM] Got RollOver from registry, "daily"
[2005-04-05 12:29:43 PM] Services supported, [2005-04-05 12:29:43
PM] "authentication" [2005-04-05 12:29:43 PM] "accounting" [2005-04-05
12:29:43 PM]
[2005-04-05 12:29:43 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:29:43 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:30:08 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:30:08 PM] Parameter count = 8
[2005-04-05 12:30:08 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:30:08 PM] argv[1] = name=CN=radiusserver
[2005-04-05 12:30:08 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:30:08 PM] argv[4] = THREADS=20
[2005-04-05 12:30:08 PM] argv[5] = auththreads=10
[2005-04-05 12:30:08 PM] argv[6] = port=1645
[2005-04-05 12:30:08 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:30:08 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:30:08 PM] Login Name = "<null>"
[2005-04-05 12:30:08 PM] Name = "CN=radiusserver"
[2005-04-05 12:30:08 PM] Workers = 20
[2005-04-05 12:30:08 PM] Port = 1645
[2005-04-05 12:30:08 PM] Error encountered = 0
[2005-04-05 12:30:08 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:30:08 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:30:08 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:30:08 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:30:08 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:30:08 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:30:08 PM] Got RollOver from registry, "daily"
[2005-04-05 12:30:08 PM] Services supported, [2005-04-05 12:30:08
PM] "authentication" [2005-04-05 12:30:08 PM] "accounting" [2005-04-05
12:30:08 PM]
[2005-04-05 12:30:08 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:30:08 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:37:03 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:37:03 PM] Parameter count = 8
[2005-04-05 12:37:03 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:37:03 PM] argv[1] = name=CN=radiusserver
[2005-04-05 12:37:03 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:37:03 PM] argv[4] = THREADS=20
[2005-04-05 12:37:03 PM] argv[5] = auththreads=10
[2005-04-05 12:37:03 PM] argv[6] = port=1645
[2005-04-05 12:37:03 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:37:03 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:37:03 PM] Login Name = "<null>"
[2005-04-05 12:37:03 PM] Name = "CN=radiusserver"
[2005-04-05 12:37:03 PM] Workers = 20
[2005-04-05 12:37:03 PM] Port = 1645
[2005-04-05 12:37:03 PM] Error encountered = 0
[2005-04-05 12:37:03 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:37:03 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:37:03 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:37:03 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:37:03 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:37:03 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:37:03 PM] Got RollOver from registry, "daily"
[2005-04-05 12:37:03 PM] Services supported, [2005-04-05 12:37:03
PM] "authentication" [2005-04-05 12:37:03 PM] "accounting" [2005-04-05
12:37:03 PM]
[2005-04-05 12:37:03 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:37:03 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:48:06 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:48:06 PM] Parameter count = 8
[2005-04-05 12:48:06 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:48:06 PM] argv[1] = name=CN=radius.pine_tech
[2005-04-05 12:48:06 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:48:06 PM] argv[4] = THREADS=20
[2005-04-05 12:48:06 PM] argv[5] = auththreads=10
[2005-04-05 12:48:06 PM] argv[6] = port=1645
[2005-04-05 12:48:06 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:48:06 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:48:06 PM] Login Name = "<null>"
[2005-04-05 12:48:06 PM] Name = "CN=radius.pine_tech"
[2005-04-05 12:48:06 PM] Workers = 20
[2005-04-05 12:48:06 PM] Port = 1645
[2005-04-05 12:48:06 PM] Error encountered = 0
[2005-04-05 12:48:06 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:48:06 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:48:06 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:48:06 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:48:06 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:48:06 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:48:06 PM] Got RollOver from registry, "daily"
[2005-04-05 12:48:06 PM] Services supported, [2005-04-05 12:48:06
PM] "authentication" [2005-04-05 12:48:06 PM] "accounting" [2005-04-05
12:48:06 PM]
[2005-04-05 12:48:06 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:48:06 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:48:57 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:48:57 PM] Parameter count = 8
[2005-04-05 12:48:57 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:48:57 PM] argv[1] = name=CN=radius
[2005-04-05 12:48:57 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:48:57 PM] argv[4] = THREADS=20
[2005-04-05 12:48:57 PM] argv[5] = auththreads=10
[2005-04-05 12:48:57 PM] argv[6] = port=1645
[2005-04-05 12:48:57 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:48:57 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:48:57 PM] Login Name = "<null>"
[2005-04-05 12:48:57 PM] Name = "CN=radius"
[2005-04-05 12:48:57 PM] Workers = 20
[2005-04-05 12:48:57 PM] Port = 1645
[2005-04-05 12:48:57 PM] Error encountered = 0
[2005-04-05 12:48:57 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:48:57 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:48:57 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:48:57 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:48:57 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:48:57 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:48:57 PM] Got RollOver from registry, "daily"
[2005-04-05 12:48:57 PM] Services supported, [2005-04-05 12:48:57
PM] "authentication" [2005-04-05 12:48:57 PM] "accounting" [2005-04-05
12:48:57 PM]
[2005-04-05 12:48:57 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:48:57 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:49:31 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:49:31 PM] Parameter count = 8
[2005-04-05 12:49:31 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:49:31 PM] argv[1] = name=radius
[2005-04-05 12:49:31 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:49:31 PM] argv[4] = THREADS=20
[2005-04-05 12:49:31 PM] argv[5] = auththreads=10
[2005-04-05 12:49:31 PM] argv[6] = port=1645
[2005-04-05 12:49:31 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:49:31 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:49:31 PM] Login Name = "<null>"
[2005-04-05 12:49:31 PM] Name = "radius"
[2005-04-05 12:49:31 PM] Workers = 20
[2005-04-05 12:49:31 PM] Port = 1645
[2005-04-05 12:49:31 PM] Error encountered = 0
[2005-04-05 12:49:31 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:49:31 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:49:31 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:49:31 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:49:31 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:49:31 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:49:31 PM] Got RollOver from registry, "daily"
[2005-04-05 12:49:31 PM] Services supported, [2005-04-05 12:49:31
PM] "authentication" [2005-04-05 12:49:31 PM] "accounting" [2005-04-05
12:49:31 PM]
[2005-04-05 12:49:31 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:49:31 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:49:39 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:49:39 PM] Parameter count = 1
[2005-04-05 12:49:39 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:49:39 PM] Tree Name = "<null>"
[2005-04-05 12:49:39 PM] Login Name = "<null>"
[2005-04-05 12:49:39 PM] Name = "<null>"
[2005-04-05 12:49:39 PM] Workers = 0
[2005-04-05 12:49:39 PM] Port = 0
[2005-04-05 12:49:39 PM] Error encountered = 0
[2005-04-05 12:49:39 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:49:39 PM] Got Tree Name from registry, "<null>"
[2005-04-05 12:49:39 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:49:39 PM] Got Service Name from registry, "<null>"
[2005-04-05 12:49:39 PM] Got Number Threads from registry, 5
[2005-04-05 12:49:39 PM] Got Service Port from registry, 1645
[2005-04-05 12:49:39 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:49:39 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:49:39 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:49:39 PM] Got RollOver from registry, "daily"
[2005-04-05 12:49:39 PM] Services supported, [2005-04-05 12:49:39
PM] "authentication" [2005-04-05 12:49:39 PM] "accounting" [2005-04-05
12:49:39 PM]
[2005-04-05 12:49:39 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:49:39 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:53:15 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:53:15 PM] Parameter count = 1
[2005-04-05 12:53:15 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:53:15 PM] Tree Name = "<null>"
[2005-04-05 12:53:15 PM] Login Name = "<null>"
[2005-04-05 12:53:15 PM] Name = "<null>"
[2005-04-05 12:53:15 PM] Workers = 0
[2005-04-05 12:53:15 PM] Port = 0
[2005-04-05 12:53:15 PM] Error encountered = 0
[2005-04-05 12:53:15 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:53:15 PM] Got Tree Name from registry, "<null>"
[2005-04-05 12:53:15 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:53:15 PM] Got Service Name from registry, "<null>"
[2005-04-05 12:53:15 PM] Got Number Threads from registry, 5
[2005-04-05 12:53:15 PM] Got Service Port from registry, 1645
[2005-04-05 12:53:15 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:53:15 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:53:15 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:53:15 PM] Got RollOver from registry, "daily"
[2005-04-05 12:53:15 PM] Services supported, [2005-04-05 12:53:15
PM] "authentication" [2005-04-05 12:53:15 PM] "accounting" [2005-04-05
12:53:15 PM]
[2005-04-05 12:53:15 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:53:15 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-05 12:54:02 PM] Deleting
file "sys:etc\radius\log\20050329.log", failed
[2005-04-05 12:54:02 PM] Parameter count = 8
[2005-04-05 12:54:02 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-05 12:54:02 PM] argv[1] = name=radiusserver
[2005-04-05 12:54:02 PM] argv[3] = Tree=Pine_Tech
[2005-04-05 12:54:02 PM] argv[4] = THREADS=20
[2005-04-05 12:54:02 PM] argv[5] = auththreads=10
[2005-04-05 12:54:02 PM] argv[6] = port=1645
[2005-04-05 12:54:02 PM] argv[7] = affinity=134.29.165.215
[2005-04-05 12:54:02 PM] Tree Name = "Pine_Tech"
[2005-04-05 12:54:02 PM] Login Name = "<null>"
[2005-04-05 12:54:02 PM] Name = "radiusserver"
[2005-04-05 12:54:02 PM] Workers = 20
[2005-04-05 12:54:02 PM] Port = 1645
[2005-04-05 12:54:02 PM] Error encountered = 0
[2005-04-05 12:54:02 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-05 12:54:02 PM] Got Login Name from registry, "<null>"
[2005-04-05 12:54:02 PM] Number of threads in thread pool kept at 20
[2005-04-05 12:54:02 PM] Got Accounting Port from registry, 1646
[2005-04-05 12:54:02 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-05 12:54:02 PM] Got Accounting File Format from
registry, "comma"
[2005-04-05 12:54:02 PM] Got RollOver from registry, "daily"
[2005-04-05 12:54:02 PM] Services supported, [2005-04-05 12:54:02
PM] "authentication" [2005-04-05 12:54:02 PM] "accounting" [2005-04-05
12:54:02 PM]
[2005-04-05 12:54:02 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-05 12:54:02 PM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-06 07:52:44 AM] Deleting
file "sys:etc\radius\log\20050330.log", failed
[2005-04-06 07:52:44 AM] Parameter count = 8
[2005-04-06 07:52:44 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-06 07:52:44 AM] argv[1] = name=radiusserver
[2005-04-06 07:52:44 AM] argv[3] = Tree=Pine_Tech
[2005-04-06 07:52:44 AM] argv[4] = THREADS=20
[2005-04-06 07:52:44 AM] argv[5] = auththreads=10
[2005-04-06 07:52:44 AM] argv[6] = port=1645
[2005-04-06 07:52:44 AM] argv[7] = affinity=134.29.165.215
[2005-04-06 07:52:44 AM] Tree Name = "Pine_Tech"
[2005-04-06 07:52:44 AM] Login Name = "<null>"
[2005-04-06 07:52:44 AM] Name = "radiusserver"
[2005-04-06 07:52:44 AM] Workers = 20
[2005-04-06 07:52:44 AM] Port = 1645
[2005-04-06 07:52:44 AM] Error encountered = 0
[2005-04-06 07:52:44 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-06 07:52:44 AM] Got Login Name from registry, "<null>"
[2005-04-06 07:52:44 AM] Number of threads in thread pool kept at 20
[2005-04-06 07:52:44 AM] Got Accounting Port from registry, 1646
[2005-04-06 07:52:44 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-06 07:52:44 AM] Got Accounting File Format from
registry, "comma"
[2005-04-06 07:52:44 AM] Got RollOver from registry, "daily"
[2005-04-06 07:52:44 AM] Services supported, [2005-04-06 07:52:44
AM] "authentication" [2005-04-06 07:52:44 AM] "accounting" [2005-04-06
07:52:44 AM]
[2005-04-06 07:52:44 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-06 07:52:44 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-06 08:19:41 AM] Deleting
file "sys:etc\radius\log\20050330.log", failed
[2005-04-06 08:19:41 AM] Parameter count = 8
[2005-04-06 08:19:41 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-06 08:19:41 AM] argv[1] = name=radiusserver
[2005-04-06 08:19:41 AM] argv[3] = Tree=Pine_Tech
[2005-04-06 08:19:41 AM] argv[4] = THREADS=20
[2005-04-06 08:19:41 AM] argv[5] = auththreads=10
[2005-04-06 08:19:41 AM] argv[6] = port=1645
[2005-04-06 08:19:41 AM] argv[7] = affinity=134.29.165.215
[2005-04-06 08:19:41 AM] Tree Name = "Pine_Tech"
[2005-04-06 08:19:41 AM] Login Name = "<null>"
[2005-04-06 08:19:41 AM] Name = "radiusserver"
[2005-04-06 08:19:41 AM] Workers = 20
[2005-04-06 08:19:41 AM] Port = 1645
[2005-04-06 08:19:41 AM] Error encountered = 0
[2005-04-06 08:19:41 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-06 08:19:41 AM] Got Login Name from registry, "<null>"
[2005-04-06 08:19:41 AM] Number of threads in thread pool kept at 20
[2005-04-06 08:19:41 AM] Got Accounting Port from registry, 1646
[2005-04-06 08:19:41 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-06 08:19:41 AM] Got Accounting File Format from
registry, "comma"
[2005-04-06 08:19:41 AM] Got RollOver from registry, "daily"
[2005-04-06 08:19:41 AM] Services supported, [2005-04-06 08:19:41
AM] "authentication" [2005-04-06 08:19:41 AM] "accounting" [2005-04-06
08:19:41 AM]
[2005-04-06 08:19:41 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-06 08:19:41 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-07 07:57:07 AM] Deleting
file "sys:etc\radius\log\20050331.log", failed
[2005-04-07 07:57:07 AM] Parameter count = 9
[2005-04-07 07:57:07 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-07 07:57:07 AM] argv[1] = name=Radiusserver
[2005-04-07 07:57:07 AM] argv[3] = Tree=Pine_Tech
[2005-04-07 07:57:07 AM] argv[4] = login=.admin.pine_tech
[2005-04-07 07:57:07 AM] argv[5] = THREADS=20
[2005-04-07 07:57:07 AM] argv[6] = auththreads=10
[2005-04-07 07:57:07 AM] argv[7] = port=1645
[2005-04-07 07:57:07 AM] argv[8] = affinity=ogema
[2005-04-07 07:57:07 AM] Tree Name = "Pine_Tech"
[2005-04-07 07:57:07 AM] Login Name = ".admin.pine_tech"
[2005-04-07 07:57:07 AM] Name = "Radiusserver"
[2005-04-07 07:57:07 AM] Workers = 20
[2005-04-07 07:57:07 AM] Port = 1645
[2005-04-07 07:57:07 AM] Error encountered = 0
[2005-04-07 07:57:07 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-07 07:57:07 AM] Number of threads in thread pool kept at 20
[2005-04-07 07:57:07 AM] Got Accounting Port from registry, 1646
[2005-04-07 07:57:07 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-07 07:57:07 AM] Got Accounting File Format from
registry, "comma"
[2005-04-07 07:57:07 AM] Got RollOver from registry, "daily"
[2005-04-07 07:57:07 AM] Services supported, [2005-04-07 07:57:07
AM] "authentication" [2005-04-07 07:57:07 AM] "accounting" [2005-04-07
07:57:07 AM]
[2005-04-07 07:57:07 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-07 07:57:07 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-07 07:58:55 AM] Deleting
file "sys:etc\radius\log\20050331.log", failed
[2005-04-07 07:58:55 AM] Parameter count = 9
[2005-04-07 07:58:55 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-07 07:58:55 AM] argv[1] = name=Radiusserver
[2005-04-07 07:58:55 AM] argv[3] = Tree=Pine_Tech
[2005-04-07 07:58:55 AM] argv[4] = login=cn=admin.0=pine_tech
[2005-04-07 07:58:55 AM] argv[5] = THREADS=20
[2005-04-07 07:58:55 AM] argv[6] = auththreads=10
[2005-04-07 07:58:55 AM] argv[7] = port=1645
[2005-04-07 07:58:55 AM] argv[8] = affinity=ogema
[2005-04-07 07:58:55 AM] Tree Name = "Pine_Tech"
[2005-04-07 07:58:55 AM] Login Name = "cn=admin.0=pine_tech"
[2005-04-07 07:58:55 AM] Name = "Radiusserver"
[2005-04-07 07:58:55 AM] Workers = 20
[2005-04-07 07:58:55 AM] Port = 1645
[2005-04-07 07:58:55 AM] Error encountered = 0
[2005-04-07 07:58:55 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-07 07:58:55 AM] Number of threads in thread pool kept at 20
[2005-04-07 07:58:55 AM] Got Accounting Port from registry, 1646
[2005-04-07 07:58:55 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-07 07:58:55 AM] Got Accounting File Format from
registry, "comma"
[2005-04-07 07:58:55 AM] Got RollOver from registry, "daily"
[2005-04-07 07:58:55 AM] Services supported, [2005-04-07 07:58:55
AM] "authentication" [2005-04-07 07:58:55 AM] "accounting" [2005-04-07
07:58:55 AM]
[2005-04-07 07:58:55 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-07 07:58:55 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-07 07:59:50 AM] Deleting
file "sys:etc\radius\log\20050331.log", failed
[2005-04-07 07:59:50 AM] Parameter count = 8
[2005-04-07 07:59:50 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-07 07:59:50 AM] argv[1] = name=Radiusserver
[2005-04-07 07:59:50 AM] argv[3] = Tree=Pine_Tech
[2005-04-07 07:59:50 AM] argv[4] = THREADS=20
[2005-04-07 07:59:50 AM] argv[5] = auththreads=10
[2005-04-07 07:59:50 AM] argv[6] = port=1645
[2005-04-07 07:59:50 AM] argv[7] = affinity=ogema
[2005-04-07 07:59:50 AM] Tree Name = "Pine_Tech"
[2005-04-07 07:59:50 AM] Login Name = "<null>"
[2005-04-07 07:59:50 AM] Name = "Radiusserver"
[2005-04-07 07:59:50 AM] Workers = 20
[2005-04-07 07:59:50 AM] Port = 1645
[2005-04-07 07:59:50 AM] Error encountered = 0
[2005-04-07 07:59:50 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-07 07:59:50 AM] Got Login Name from registry, "<null>"
[2005-04-07 07:59:50 AM] Number of threads in thread pool kept at 20
[2005-04-07 07:59:50 AM] Got Accounting Port from registry, 1646
[2005-04-07 07:59:50 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-07 07:59:50 AM] Got Accounting File Format from
registry, "comma"
[2005-04-07 07:59:50 AM] Got RollOver from registry, "daily"
[2005-04-07 07:59:50 AM] Services supported, [2005-04-07 07:59:50
AM] "authentication" [2005-04-07 07:59:50 AM] "accounting" [2005-04-07
07:59:50 AM]
[2005-04-07 07:59:50 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-07 07:59:50 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-07 08:01:59 AM] Deleting
file "sys:etc\radius\log\20050331.log", failed
[2005-04-07 08:01:59 AM] Parameter count = 9
[2005-04-07 08:01:59 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-07 08:01:59 AM] argv[1] = name=Radiusserver
[2005-04-07 08:01:59 AM] argv[3] = Tree=Pine_Tech
[2005-04-07 08:01:59 AM] argv[4] = login=.cn=admin.0=pine_tech
[2005-04-07 08:01:59 AM] argv[5] = THREADS=20
[2005-04-07 08:01:59 AM] argv[6] = auththreads=10
[2005-04-07 08:01:59 AM] argv[7] = port=1645
[2005-04-07 08:01:59 AM] argv[8] = affinity=ogema
[2005-04-07 08:01:59 AM] Tree Name = "Pine_Tech"
[2005-04-07 08:01:59 AM] Login Name = ".cn=admin.0=pine_tech"
[2005-04-07 08:01:59 AM] Name = "Radiusserver"
[2005-04-07 08:01:59 AM] Workers = 20
[2005-04-07 08:01:59 AM] Port = 1645
[2005-04-07 08:01:59 AM] Error encountered = 0
[2005-04-07 08:01:59 AM] Checking if parameters are to be retrieved
from Registry
[2005-04-07 08:01:59 AM] Number of threads in thread pool kept at 20
[2005-04-07 08:01:59 AM] Got Accounting Port from registry, 1646
[2005-04-07 08:01:59 AM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-07 08:01:59 AM] Got Accounting File Format from
registry, "comma"
[2005-04-07 08:01:59 AM] Got RollOver from registry, "daily"
[2005-04-07 08:01:59 AM] Services supported, [2005-04-07 08:01:59
AM] "authentication" [2005-04-07 08:01:59 AM] "accounting" [2005-04-07
08:01:59 AM]
[2005-04-07 08:01:59 AM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-07 08:01:59 AM] Got Authentication Path from registry,
sys:etc\radius
[2005-04-07 11:36:56 AM] Debug logging enabled to file
sys:etc\radius\debug\raddbg.log
[2005-04-07 11:36:56 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:37:40 AM] Cacher: Console initiated rebuild of cache
[2005-04-07 11:37:40 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:84
[2005-04-07 11:37:40 AM] Cacher: Rebuilding cache, mod time different,
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:DAS Version) succeeded, time:11
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Password Policy) failed, no such
attribute (-603), time:10
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Common Name Resolution) succeeded,
time:8
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Concurrent Limit) failed, no such
attribute (-603), time:9
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Interim Accting Timeout) failed, no
such attribute (-603), time:8
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Aged Interval) failed, no such
attribute (-603), time:8
[2005-04-07 11:37:40 AM] (->)NDSReadData:NWDSRead
(Radiusserver.CIS.Pine_tech,RADIUS:Maximum History Record) failed, no
such attribute (-603), time:8
[2005-04-07 11:37:40 AM] CACHE: Use Netware Password
for "Radiusserver.CIS.Pine_tech": Enabled
[2005-04-07 11:37:40 AM] CACHE: CN Login
for "Radiusserver.CIS.Pine_tech": Enabled
[2005-04-07 11:37:40 AM] CACHE: Concurrent Limit
for "Radiusserver.CIS.Pine_tech": 0x80000000
[2005-04-07 11:37:40 AM] CACHE: Interim Timeout
for "Radiusserver.CIS.Pine_tech": 10 minutes
[2005-04-07 11:37:40 AM] CACHE: Interval For Aging
for "Radiusserver.CIS.Pine_tech": 7 days
[2005-04-07 11:37:40 AM] CACHE: Max History Record
for "Radiusserver.CIS.Pine_tech": 30
[2005-04-07 11:37:40 AM]
Context Lookup List set to:
[2005-04-07 11:37:40 AM] 1) STAFF.Pine_tech
[2005-04-07 11:37:40 AM] 2) Pine_tech
[2005-04-07 11:37:40 AM] 3) CIS.Pine_tech
[2005-04-07 11:37:40 AM] 4) STUDENTS.Pine_tech
[2005-04-07 11:37:40 AM] Number of contexts = 4
[2005-04-07 11:37:40 AM] tag extracted: 134.29.165.238, size: 15,
tagLength: 30
[2005-04-07 11:37:40 AM] (->)NDSSetUpClientTable
(Radiusserver.CIS.Pine_tech) failed, -1659 (0xfffff985)
[2005-04-07 11:37:40 AM] Cache: Error from NDSSetUpClientTable: failed, -
1659 (0xfffff985)
[2005-04-07 11:37:40 AM] Cache: Successfully set up client table
[2005-04-07 11:37:40 AM] (->)NDSSetUpContextList
(Radiusserver.CIS.Pine_tech), ProxyContext is empty
[2005-04-07 11:37:40 AM] Cache: Successfully set up context list
[2005-04-07 11:37:40 AM] (->)NDSSetUpDomainList
(Radiusserver.CIS.Pine_tech), Domain list is empty.
[2005-04-07 11:37:40 AM] Cache: Successfully set up domain list
[2005-04-07 11:37:40 AM] Cache: Successfully set up search domain list
[2005-04-07 11:37:40 AM] Cache: Successfully build context list
[2005-04-07 11:37:40 AM] CACHE: Cache reloaded at [2005-04-07 11:37:40
AM], current reload count is 4
[2005-04-07 11:37:40 AM] Cacher: RefreshCache(), succeeded
[2005-04-07 11:37:40 AM] CACHE: Cache loaded at [2005-04-07 11:12:04
AM] has been discarded , current reload count is 4
[2005-04-07 11:38:39 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:39:39 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:3
[2005-04-07 11:40:39 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:41:38 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:42:38 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:43:38 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:44:38 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:45:37 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:46:37 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:47:37 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:48:36 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:49:36 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:50:36 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:51:35 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:52:35 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:53:35 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:54:35 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:55:34 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:56:34 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:57:34 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 11:58:33 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 11:59:33 AM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:00:33 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:01:33 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:02:32 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:03:32 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:04:32 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:05:31 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:06:31 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:07:31 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:08:30 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:09:30 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:10:30 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:11:30 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:12:29 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:13:29 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:14:29 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:15:28 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:16:28 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:17:28 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:18:28 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:19:27 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:20:27 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:21:27 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:22:26 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:23:26 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:24:26 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:2
[2005-04-07 12:25:26 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:26:25 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:27:25 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:28:25 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:29:24 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:2
[2005-04-07 12:30:24 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:31:24 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:32:24 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:33:23 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:34:23 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:35:23 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:36:22 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:37:22 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:38:22 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:39:22 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:3
[2005-04-07 12:40:21 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:3
[2005-04-07 12:41:21 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:42:21 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:43:20 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:44:20 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:45:02 PM] 23) [(ip) 134.29.165.60:4934], Received 32 Bytes
(Access-Request (1))
[2005-04-07 12:45:02 PM] [(total=23) (p=22) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:45:02 PM] <4> Done GetNextMessage [(ip)
134.29.165.60:4934]: time:146272011
[2005-04-07 12:45:02 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735261046---
[2005-04-07 12:45:02 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 12:45:02 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 12:45:02 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 12:45:02 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735261050---
[2005-04-07 12:45:05 PM] 24) [(ip) 134.29.165.60:4934], Received 32 Bytes
(Access-Request (1))
[2005-04-07 12:45:05 PM] [(total=24) (p=23) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:45:05 PM] <5> Done GetNextMessage [(ip)
134.29.165.60:4934]: time:143980515
[2005-04-07 12:45:05 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735291043---
[2005-04-07 12:45:05 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 12:45:05 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 12:45:05 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 12:45:05 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735291046---
[2005-04-07 12:45:08 PM] 25) [(ip) 134.29.165.60:4934], Received 32 Bytes
(Access-Request (1))
[2005-04-07 12:45:08 PM] [(total=25) (p=24) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:45:08 PM] <6> Done GetNextMessage [(ip)
134.29.165.60:4934]: time:143812276
[2005-04-07 12:45:08 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735321041---
[2005-04-07 12:45:08 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 12:45:08 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 12:45:08 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 12:45:08 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4934]: time:1735321044---
[2005-04-07 12:45:20 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:46:02 PM] 26) [(ip) 134.29.165.60:4938], Received 32 Bytes
(Status-Server (experimental) (12))
[2005-04-07 12:46:02 PM] [(total=26) (p=25) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:46:02 PM] <17> Done GetNextMessage [(ip)
134.29.165.60:4938]: time:143498905
[2005-04-07 12:46:02 PM] -------- START : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735862279---
[2005-04-07 12:46:02 PM] -------- END : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735862280---
[2005-04-07 12:46:05 PM] 27) [(ip) 134.29.165.60:4938], Received 32 Bytes
(Status-Server (experimental) (12))
[2005-04-07 12:46:05 PM] [(total=27) (p=25) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:46:05 PM] <7> Done GetNextMessage [(ip)
134.29.165.60:4938]: time:143283413
[2005-04-07 12:46:05 PM] -------- START : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735892273---
[2005-04-07 12:46:05 PM] -------- END : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735892273---
[2005-04-07 12:46:08 PM] 28) [(ip) 134.29.165.60:4938], Received 32 Bytes
(Status-Server (experimental) (12))
[2005-04-07 12:46:08 PM] [(total=28) (p=25) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 12:46:08 PM] <8> Done GetNextMessage [(ip)
134.29.165.60:4938]: time:142537503
[2005-04-07 12:46:08 PM] -------- START : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735922272---
[2005-04-07 12:46:08 PM] -------- END : (Status-Server (experimental)
(12)) [(ip) 134.29.165.60:4938]: time:1735922273---
[2005-04-07 12:46:20 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:47:19 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:48:19 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:49:19 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:50:18 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:51:18 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:52:18 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:8
[2005-04-07 12:53:18 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 12:54:17 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 12:55:17 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:56:17 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:12
[2005-04-07 12:57:16 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 12:58:16 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:8
[2005-04-07 12:59:16 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 01:00:16 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:01:15 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 01:02:15 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:03:15 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:6
[2005-04-07 01:04:14 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:8
[2005-04-07 01:05:14 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 01:06:14 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:07:14 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 01:07:26 PM] 29) [(ip) 134.29.165.60:4977], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:07:26 PM] [(total=29) (p=25) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:07:26 PM] <9> Done GetNextMessage [(ip)
134.29.165.60:4977]: time:155284791
[2005-04-07 01:07:26 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748699558---
[2005-04-07 01:07:26 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:07:26 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:07:26 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:07:26 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748699561---
[2005-04-07 01:07:29 PM] 30) [(ip) 134.29.165.60:4977], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:07:29 PM] [(total=30) (p=26) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:07:29 PM] <10> Done GetNextMessage [(ip)
134.29.165.60:4977]: time:155284778
[2005-04-07 01:07:29 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748729551---
[2005-04-07 01:07:29 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:07:29 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:07:29 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:07:29 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748729556---
[2005-04-07 01:07:32 PM] 31) [(ip) 134.29.165.60:4977], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:07:32 PM] [(total=31) (p=27) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:07:32 PM] <12> Done GetNextMessage [(ip)
134.29.165.60:4977]: time:152984549
[2005-04-07 01:07:32 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748759554---
[2005-04-07 01:07:32 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:07:32 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:07:32 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:07:32 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4977]: time:1748759557---
[2005-04-07 01:07:57 PM] 32) [(ip) 134.29.165.60:4978], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:07:57 PM] [(total=32) (p=28) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:07:57 PM] <13> Done GetNextMessage [(ip)
134.29.165.60:4978]: time:153203593
[2005-04-07 01:07:57 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749008609---
[2005-04-07 01:07:57 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:07:57 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:07:57 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:07:57 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749008612---
[2005-04-07 01:08:00 PM] 33) [(ip) 134.29.165.60:4978], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:08:00 PM] [(total=33) (p=29) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:08:00 PM] <14> Done GetNextMessage [(ip)
134.29.165.60:4978]: time:153203544
[2005-04-07 01:08:00 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749038589---
[2005-04-07 01:08:00 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:08:00 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:08:00 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:08:00 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749038592---
[2005-04-07 01:08:03 PM] 34) [(ip) 134.29.165.60:4978], Received 32 Bytes
(Access-Request (1))
[2005-04-07 01:08:03 PM] [(total=34) (p=30) (d=0) (r=0) (acc=0)
(rej=0)]
[2005-04-07 01:08:03 PM] <15> Done GetNextMessage [(ip)
134.29.165.60:4978]: time:152642772
[2005-04-07 01:08:03 PM] -------- START : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749068591---
[2005-04-07 01:08:03 PM] CACHE: CacheDomainListExist
(Radiusserver.CIS.Pine_tech), using cache
[2005-04-07 01:08:03 PM] AuthRequestHandler(), Calling RequestHandler.
[2005-04-07 01:08:03 PM] RequestHandler(), Invalid Packet being
dropped, failed, no such attribute (-803)
[2005-04-07 01:08:03 PM] -------- END : (Access-Request (1)) [(ip)
134.29.165.60:4978]: time:1749068595---
[2005-04-07 01:08:13 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:12
[2005-04-07 01:09:13 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 01:10:13 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:8
[2005-04-07 01:11:12 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 01:12:12 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:13:12 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 01:14:12 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:15:11 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:4
[2005-04-07 01:16:11 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:8
[2005-04-07 01:17:11 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 01:18:10 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:9
[2005-04-07 01:19:10 PM] (->)Cacher: NWDSReadObjectInfo
(Radiusserver.CIS.Pine_tech), succeeded, time:5
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] <Cache thread stopped>
[2005-04-07 01:19:41 PM] <Rx thread stopped>
[2005-04-07 01:19:41 PM] UnloadHandler: Unloading workers
[2005-04-07 01:19:41 PM] .[2005-04-07 01:19:41 PM] GetNextMessage()
failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] GetNextMessage() failed, generic failure (-1)
[2005-04-07 01:19:41 PM] <Worker (13) Stopped, errL generic failure (-1),
(workers remaining = 19)>
[2005-04-07 01:19:41 PM] <Worker (17) Stopped, errL generic failure (-1),
(workers remaining = 18)>
[2005-04-07 01:19:41 PM] <Worker (18) Stopped, errL generic failure (-1),
(workers remaining = 17)>
[2005-04-07 01:19:41 PM] <Worker (19) Stopped, errL generic failure (-1),
(workers remaining = 16)>
[2005-04-07 01:19:41 PM] <Worker (8) Stopped, errL generic failure (-1),
(workers remaining = 15)>
[2005-04-07 01:19:41 PM] <Worker (0) Stopped, errL generic failure (-1),
(workers remaining = 14)>
[2005-04-07 01:19:41 PM] <Worker (1) Stopped, errL generic failure (-1),
(workers remaining = 13)>
[2005-04-07 01:19:41 PM] <Worker (7) Stopped, errL generic failure (-1),
(workers remaining = 12)>
[2005-04-07 01:19:41 PM] <Worker (2) Stopped, errL generic failure (-1),
(workers remaining = 11)>
[2005-04-07 01:19:41 PM] <Worker (3) Stopped, errL generic failure (-1),
(workers remaining = 10)>
[2005-04-07 01:19:41 PM] <Worker (14) Stopped, errL generic failure (-1),
(workers remaining = 9)>
[2005-04-07 01:19:41 PM] <Worker (16) Stopped, errL generic failure (-1),
(workers remaining = 8)>
[2005-04-07 01:19:41 PM] <Worker (4) Stopped, errL generic failure (-1),
(workers remaining = 7)>
[2005-04-07 01:19:41 PM] <Worker (5) Stopped, errL generic failure (-1),
(workers remaining = 6)>
[2005-04-07 01:19:41 PM] <Worker (6) Stopped, errL generic failure (-1),
(workers remaining = 5)>
[2005-04-07 01:19:41 PM] <Worker (9) Stopped, errL generic failure (-1),
(workers remaining = 4)>
[2005-04-07 01:19:41 PM] <Worker (10) Stopped, errL generic failure (-1),
(workers remaining = 3)>
[2005-04-07 01:19:41 PM] <Worker (11) Stopped, errL generic failure (-1),
(workers remaining = 2)>
[2005-04-07 01:19:41 PM] <Worker (12) Stopped, errL generic failure (-1),
(workers remaining = 1)>
[2005-04-07 01:19:41 PM] <Worker (15) Stopped, errL generic failure (-1),
(workers remaining = 0)>
[2005-04-07 01:19:42 PM] UnloadHandler: Unload Cache Thread
[2005-04-07 01:19:42 PM] FreeProxyQ(), Free authentication proxy
queue...
[2005-04-07 01:19:42 PM] FreeProxyQ(), Free accounting proxy queue...
[2005-04-07 01:19:47 PM] Deleting
file "sys:etc\radius\log\20050331.log", failed
[2005-04-07 01:19:47 PM] Parameter count = 9
[2005-04-07 01:19:47 PM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
[2005-04-07 01:19:47 PM] argv[1] = name=Radiusserver
[2005-04-07 01:19:47 PM] argv[3] = Tree=Pine_Tech
[2005-04-07 01:19:47 PM] argv[4] = login=.cn=admin.0=pine_tech
[2005-04-07 01:19:47 PM] argv[5] = THREADS=20
[2005-04-07 01:19:47 PM] argv[6] = auththreads=10
[2005-04-07 01:19:47 PM] argv[7] = port=1645
[2005-04-07 01:19:47 PM] argv[8] = affinity=ogema
[2005-04-07 01:19:47 PM] Tree Name = "Pine_Tech"
[2005-04-07 01:19:47 PM] Login Name = ".cn=admin.0=pine_tech"
[2005-04-07 01:19:47 PM] Name = "Radiusserver"
[2005-04-07 01:19:47 PM] Workers = 20
[2005-04-07 01:19:47 PM] Port = 1645
[2005-04-07 01:19:47 PM] Error encountered = 0
[2005-04-07 01:19:47 PM] Checking if parameters are to be retrieved
from Registry
[2005-04-07 01:19:47 PM] Number of threads in thread pool kept at 20
[2005-04-07 01:19:47 PM] Got Accounting Port from registry, 1646
[2005-04-07 01:19:47 PM] Got Accounting Path from
registry, "sys:\etc\radius\acct"
[2005-04-07 01:19:47 PM] Got Accounting File Format from
registry, "comma"
[2005-04-07 01:19:47 PM] Got RollOver from registry, "daily"
[2005-04-07 01:19:47 PM] Services supported, [2005-04-07 01:19:47
PM] "authentication" [2005-04-07 01:19:47 PM] "accounting" [2005-04-07
01:19:47 PM]
[2005-04-07 01:19:47 PM] Got Accounting Attribute File from registry,
sys:\etc\radius\radacct.atr
[2005-04-07 01:19:47 PM] Got Authentication Path from registry,
sys:etc\radiusYour RADIUS server is getting a -1659 error from NMAS when it tries to read
the client table. You need to install the latest NMAS server patch. If
memory serves, this problem was fixed in NMAS 2.3.5.
>>> <[email protected]> 4/7/2005 1:28 PM >>>
Radius help!
Unknown Radius Client error
using netware 6.0
Have tried using freeradius but no luck there also.
[2005-04-07 11:37:40 AM] tag extracted: 134.29.165.238, size: 15,
tagLength: 30
[2005-04-07 11:37:40 AM] (->)NDSSetUpClientTable
(Radiusserver.CIS.Pine_tech) failed, -1659 (0xfffff985)
[2005-04-07 11:37:40 AM] Cache: Error from NDSSetUpClientTable: failed, -
1659 (0xfffff985)
[2005-04-07 11:37:40 AM] Cache: Successfully set up client table
[2005-04-07 11:37:40 AM] (->)NDSSetUpContextList
(Radiusserver.CIS.Pine_tech), ProxyContext is empty
[2005-04-07 11:37:40 AM] Cache: Successfully set up context list
[2005-04-07 11:37:40 AM] (->)NDSSetUpDomainList
(Radiusserver.CIS.Pine_tech), Domain list is empty.
[2005-04-07 11:37:40 AM] Cache: Successfully set up domain list
[2005-04-07 11:37:40 AM] Cache: Successfully set up search domain list
[2005-04-07 11:37:40 AM] Cache: Successfully build context list
[2005-04-07 11:37:40 AM] CACHE: Cache reloaded at [2005-04-07 11:37:40
AM], current reload count is 4
[2005-04-07 11:37:40 AM] Cacher: RefreshCache(), succeeded
[2005-04-07 11:37:40 AM] CACHE: Cache loaded at [2005-04-07 11:12:04
AM] has been discarded , current reload count is 4 -
Shell access required for RADIUS authentication?
Hello all,
A customer of mine has a fleet of modern Mac laptops, all accessing 3 AFP file servers. Access to those file servers is governed by a Snow Leopard Open Directory Master. Pretty simple.
I’ve been tasked with introducing RADIUS authentication to the WLAN there. The WAPs are all Airport Extremes, so again the setup is pretty simple.
But in testing, I see that users can authenticate to the RADIUS WLAN only if I give those user accounts shell access in Open Directory. If a user’s account has a login shell set to None (our previous default), then any RADIUS authentication attempt produces the following log error:
Auth: [unix] [USERNAME]: invalid shell [/dev/null]
If I switch that user’s login shell to (for example) /bin/bash, then restart RADIUS, that user authenticates successfully thereafter.
Is this expected behavior? Is there an alternative to giving everyone shell access?
Thanks for any info,
Brandon White
System Administrator
www.technico.usHi Peter,
have a look at the RADIUS implementation CookBook (www.vasco.com/novell)
chris
> We use Vasco tokens for two things: Checkpoint Firewall-1 VPN
> authentication, and iChain 2.2 RADIUS authentication. The current
> RADIUS.NLM that we use is from the iChain authentication CD.
>
> The only problem I can think of to mention is the "Unknown RADIUS client"
> error that we got after NW6 SP5. That was solved by the latest NMAS
patches
> and an upgrade from eDir 8.6.2 to 8.7.3.
>
>
> "Peter van de Meerendonk" <[email protected]>
wrote in
> message news:JNiQd.595$[email protected]..
> > > Well, just let me cover my hiney a little. We did have extremely bad
> > > results with Activcard ACO000 tokens, but that is an old product from
> > about
> > > 3-4 years ago. I have no knowledge of the current Activcard tokens.
> > >
> > OK, but the licensing policy makes activcard a costly alternative.
we've
> got
> > a good deal on RSA, and are negociating a deal on Vasco. eventually we
> might
> > need 250+ tokens.
> >
> > I am very interested in configuration details of your setup. do you use
> the
> > tokens only for checkpoint authentication, or for novell
authentication as
> > well?
> >
> >
> >
>
> -
NMAS based token for radius authentication towards checkpoint firewall
hi,
i'm looking for token based access towards a checkpoint firewall. i found
out about radius, and think that's the way to go.
our user administration is NW65SP2 & Edir 8.7.3 based.
has anyone a success story about a token based radius server based on this
configuration ?
which token ?
additional software ?
anyone ?Hi Peter,
have a look at the RADIUS implementation CookBook (www.vasco.com/novell)
chris
> We use Vasco tokens for two things: Checkpoint Firewall-1 VPN
> authentication, and iChain 2.2 RADIUS authentication. The current
> RADIUS.NLM that we use is from the iChain authentication CD.
>
> The only problem I can think of to mention is the "Unknown RADIUS client"
> error that we got after NW6 SP5. That was solved by the latest NMAS
patches
> and an upgrade from eDir 8.6.2 to 8.7.3.
>
>
> "Peter van de Meerendonk" <[email protected]>
wrote in
> message news:JNiQd.595$[email protected]..
> > > Well, just let me cover my hiney a little. We did have extremely bad
> > > results with Activcard ACO000 tokens, but that is an old product from
> > about
> > > 3-4 years ago. I have no knowledge of the current Activcard tokens.
> > >
> > OK, but the licensing policy makes activcard a costly alternative.
we've
> got
> > a good deal on RSA, and are negociating a deal on Vasco. eventually we
> might
> > need 250+ tokens.
> >
> > I am very interested in configuration details of your setup. do you use
> the
> > tokens only for checkpoint authentication, or for novell
authentication as
> > well?
> >
> >
> >
>
> -
I've setup a BM38 server running on NW65 sp2. Added my workstation IP to
the DAS object client list via ConsoleOne. Go to test my Radius server and
get "Unknown Radius Client" error messages on the console.
If I look as the DAS in ConsoleOne, the IP is there in the client list. But
if I look at the DAS in NWADMIN, the ip is not in the client list. Once I
add the IP in NWADMIN, my test works, so this tells me I don't use C1 to
administer the newer Radius in BM38? I thought I HAD to use C1 with the new
version?
any thoughts / ideas???Please post a RADIUS debug log. You can generate the debug log using the
"radius debuglog on" command at the server console. Next, use the "radius
refreshcache" command to force RADIUS to re-read the client table from your
DAS in eDirectory. RADIUS should encounter an error reading the client
table, and this error will be reported in the debug log. The log will be
written to sys:\etc\radius\debug\raddbg.log.
Note that problems of this nature are often the result of a missing or
invalid tree key on one of your servers. You can use SDIDIAG to diagnose and
correct tree key problems.
>>> Dan<[email protected]> 1/20/2005 1:27:48 AM >>>
I'm sorry, I must have had a brain fade, as my test was not as earlier
reported.
I do get errors when trying to test a Radius request against my new BM38
server. I used C1 to add the client IP to the client list and verified it
is in the list. When I then attempt a Radius request, I get "Access request
dropped", "Unknown Radius Client".
Any ideas?
My RADIUS.NLM is ver 4.14 dated March 6, 2003.
Background on our setup is:
Have BM36EE server running on NW51, using DAS object created and managed via
NWADMIN. Installed new NW65 server, installed BM38 and used C1 to create a
new DAS object. So we have our current production radius service (running
on BM36EE) and a entirely separate system running BM38. We did this so we
could test our various authentication methods on the new system, without
doing an "all at once" cutover.
"Scott Kiester" <[email protected]> wrote in message
news:%[email protected]...
> You should be using ConsoleOne to administer BMAS 3.8. Since RADIUS
> recognizes client settings configured with NWAdmin, you must be running
an
> older RADIUS.NLM. The RADIUS.NLM from BMAS 3.8 cannot decrypt client
> shared
> secrets that were set with NWAdmin because NWAdmin encrypts them with an
> algorithm that is not available in NICI.
>
> If your RADIUS.NLM version is greater than 4.0, then you have BMAS 3.8.
If
> it's in the 3.x range, then it's probably from BMAS 3.5, 3.6, or 3.7.
> -
Hello there,
I had RADIUS running fine on NetWare 6 SP3 and NMAS 2.2 although sadly that
all changed after applying SP4. The RADIUS screen now reports 'Unknown
RADIUS client' and the debug log shows -822 errors.
Can anybody help?
Jim.Scott,
After upgrading a NW 6Sp3 server to NW 6.5sp1, I'm getting the
"CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
Dropped"
Would this patch mentioned in the TID fix this as well? I ask because its
not clear if the patch only fixes the -1659 or all of the issues.
Thanks
jeff
"Scott Kiester" <[email protected]> wrote in message
news:[email protected]...
> Your problem is the -1659 error, which you can see here:
>
> [2004-03-30 10:05:25 AM] (->)NDSSetUpClientTable(xav-das.senior.xavier)
> failed, -1659 (0xfffff985)
>
> This problem is due to a bug in newer versions of NMAS.NLM. RADIUS calls
> NMAS to store and retrieve the client table from the DAS object because
NMAS
> will encrypt the data.
>
> I just found TID 10091107, which documents this problem, but unfortunately
> does not contain a link to a patch. There is a patch available, but it
does
> not appear that support has posted it yet. Call support and tell them that
> you need the NMAS patch for the -1659 errors with RADIUS on NetWare 6.5.
>
> >>> <[email protected]> 3/29/2004 5:10:26 PM >>>
> Hi Scott,
>
> Thank you for the prompt reply. I have patched the radius with the
> recommended. Still the problem persist.
>
> the log follows:
>
> [2004-03-30 10:04:33 AM] Deleting
> file "sys:etc\radius\log\20040323.log", failed
> [2004-03-30 10:04:33 AM] Parameter count = 1
> [2004-03-30 10:04:33 AM] argv[0] = SYS:\SYSTEM\RADIUS.NLM
> [2004-03-30 10:04:33 AM] Tree Name = "<null>"
> [2004-03-30 10:04:33 AM] Login Name = "<null>"
> [2004-03-30 10:04:33 AM] Name = "<null>"
> [2004-03-30 10:04:33 AM] Workers = 0
> [2004-03-30 10:04:33 AM] Port = 0
> [2004-03-30 10:04:33 AM] Error encountered = 0
> [2004-03-30 10:04:33 AM] Checking if parameters are to be retrieved
> from Registry
> [2004-03-30 10:04:33 AM] Got Tree Name from registry, "<null>"
> [2004-03-30 10:04:33 AM] Got Login Name from registry, "<null>"
> [2004-03-30 10:04:33 AM] Got Service Name from registry, "<null>"
> [2004-03-30 10:04:33 AM] Got Number Threads from registry, 5
> [2004-03-30 10:04:33 AM] Got Service Port from registry, 1645
> [2004-03-30 10:04:33 AM] Got Accounting Port from registry, 1646
> [2004-03-30 10:04:33 AM] Got Accounting Path from
> registry, "sys:\etc\radius\acct"
> [2004-03-30 10:04:33 AM] Got Accounting File Format from
> registry, "comma"
> [2004-03-30 10:04:33 AM] Got RollOver from registry, "daily"
> [2004-03-30 10:04:33 AM] Services supported, [2004-03-30 10:04:33
> AM] "authentication" [2004-03-30 10:04:33 AM] "accounting" [2004-03-30
> 10:04:33 AM]
> [2004-03-30 10:04:33 AM] Got Accounting Attribute File from registry,
> sys:\etc\radius\radacct.atr
> [2004-03-30 10:04:33 AM] Got Authentication Path from registry,
> sys:etc\radius
> [2004-03-30 10:04:42 AM] Debug logging enabled to file
> sys:etc\radius\debug\raddbg.log
> [2004-03-30 10:05:20 AM] Dial Access System Name = "xav-
> das.senior.xavier"
> [2004-03-30 10:05:25 AM] Login name used = "xav-das.senior.xavier"
> [2004-03-30 10:05:25 AM] Default Context is "senior.xavier"
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:DAS Version) succeeded, time:409
> [2004-03-30 10:05:25 AM] <Cache thread started>
> [2004-03-30 10:05:25 AM] Cacher: Rebuilding cache, new cache
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:DAS Version) succeeded, time:18
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Password Policy) failed, no such attribute (-
> 603), time:13
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Common Name Resolution) succeeded, time:20
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Concurrent Limit) failed, no such attribute (-
> 603), time:13
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Interim Accting Timeout) failed, no such
> attribute (-603), time:13
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Aged Interval) failed, no such attribute (-603),
> time:13
> [2004-03-30 10:05:25 AM] (->)NDSReadData:NWDSRead(xav-
> das.senior.xavier,RADIUS:Maximum History Record) failed, no such
> attribute (-603), time:13
> [2004-03-30 10:05:25 AM] CACHE: Use Netware Password for "xav-
> das.senior.xavier": Enabled
> [2004-03-30 10:05:25 AM] CACHE: CN Login for "xav-das.senior.xavier":
> Enabled
> [2004-03-30 10:05:25 AM] CACHE: Concurrent Limit for "xav-
> das.senior.xavier": 0x80000000
> [2004-03-30 10:05:25 AM] CACHE: Interim Timeout for "xav-
> das.senior.xavier": 10 minutes
> [2004-03-30 10:05:25 AM] CACHE: Interval For Aging for "xav-
> das.senior.xavier": 7 days
> [2004-03-30 10:05:25 AM] CACHE: Max History Record for "xav-
> das.senior.xavier": 30
> [2004-03-30 10:05:25 AM]
> Context Lookup List set to:
> [2004-03-30 10:05:25 AM] 1) Staff.Senior.Xavier
> [2004-03-30 10:05:25 AM] Number of contexts = 1
> [2004-03-30 10:05:25 AM] tag extracted: 10.10.100.138, size: 14,
> tagLength: 28
> [2004-03-30 10:05:25 AM] (->)NDSSetUpClientTable(xav-das.senior.xavier)
> failed, -1659 (0xfffff985)
> [2004-03-30 10:05:25 AM] Cache: Error from NDSSetUpClientTable: failed, -
> 1659 (0xfffff985)
> [2004-03-30 10:05:25 AM] Cache: Successfully set up client table
> [2004-03-30 10:05:25 AM] (->)NDSSetUpContextList(xav-
> das.senior.xavier), ProxyContext is empty
> [2004-03-30 10:05:25 AM] Cache: Successfully set up context list
> [2004-03-30 10:05:25 AM] (->)NDSSetUpDomainList(xav-das.senior.xavier),
> Domain list is empty.
> [2004-03-30 10:05:25 AM] Cache: Successfully set up domain list
> [2004-03-30 10:05:25 AM] Cache: Successfully set up search domain list
> [2004-03-30 10:05:25 AM] Cache: Successfully build context list
> [2004-03-30 10:05:25 AM] CACHE: Cache reloaded at [2004-03-30 10:05:25
> AM], current reload count is 1
> [2004-03-30 10:05:25 AM] Cacher: RefreshCache(), succeeded
> [2004-03-30 10:05:25 AM] (->)Cacher: NWDSReadObjectInfo(xav-
> das.senior.xavier), succeeded, time:1
> [2004-03-30 10:05:25 AM] Starting up 5 worker threads
> [2004-03-30 10:05:25 AM] <Rx thread started>
> [2004-03-30 10:05:25 AM] <Rx thread started>
> [2004-03-30 10:05:25 AM] RADIUS Service started successfully
> [2004-03-30 10:05:25 AM] <Worker (0) started (count=1)>
> [2004-03-30 10:05:25 AM] <Worker (1) started (count=2)>
> [2004-03-30 10:05:25 AM] <Worker (3) started (count=3)>
> [2004-03-30 10:05:25 AM] <Worker (2) started (count=4)>
> [2004-03-30 10:05:25 AM] <Worker (4) started (count=5)>
> [2004-03-30 10:05:32 AM] 1) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:32 AM] [(total=1) (p=0) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:32 AM] <2> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:69267
> [2004-03-30 10:05:32 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077331127---
> [2004-03-30 10:05:32 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:32 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:32 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:32 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:32 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077331122---
> [2004-03-30 10:05:35 AM] 2) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:35 AM] [(total=2) (p=1) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:35 AM] <3> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:104294
> [2004-03-30 10:05:35 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077295941---
> [2004-03-30 10:05:35 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:35 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:35 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:35 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:35 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077295935---
> [2004-03-30 10:05:39 AM] 3) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:39 AM] [(total=3) (p=2) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:39 AM] <5> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:139395
> [2004-03-30 10:05:39 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077260769---
> [2004-03-30 10:05:39 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:39 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:39 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:39 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:39 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077260753---
> [2004-03-30 10:05:43 AM] 4) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:43 AM] [(total=4) (p=3) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:43 AM] <4> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:174447
> [2004-03-30 10:05:43 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077225619---
> [2004-03-30 10:05:43 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:43 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:43 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:43 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:43 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077225606---
> [2004-03-30 10:05:46 AM] 5) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:46 AM] [(total=5) (p=4) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:46 AM] <6> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:209611
> [2004-03-30 10:05:46 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077190453---
> [2004-03-30 10:05:46 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:46 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:46 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:46 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:46 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077190441---
> [2004-03-30 10:05:50 AM] 6) [(ip) 10.10.100.138:2012], Received 48 Bytes
> (Access-Request (1))
> [2004-03-30 10:05:50 AM] [(total=6) (p=5) (d=0) (r=0) (acc=0) (rej=0)]
> [2004-03-30 10:05:50 AM] <2> Done GetNextMessage [(ip)
> 10.10.100.138:2012]: time:175888
> [2004-03-30 10:05:50 AM] -------- START : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077155232---
> [2004-03-30 10:05:50 AM] CACHE: CacheDomainListExist(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:50 AM] AuthRequestHandler(), Calling RequestHandler.
> [2004-03-30 10:05:50 AM] CACHE: CacheReadSecretForNASAddress(xav-
> das.senior.xavier), using cache
> [2004-03-30 10:05:50 AM] HandleLocalRequest(),
> CacheReadSecretForNASAddress failed, no such RADIUS client (-822), Packet
> Dropped
> [2004-03-30 10:05:50 AM] -------- END : (Access-Request (1)) [(ip)
> 10.10.100.138:2012]: time:-1077155214---
>
>
>
>
> > Your problem could be a couple of different things. To help narrow this
> > down, please do the following:
> >
> > 1) Make sure that you have applied the same patch that I recommended to
> the
> > original poster. This problem affects all versions of RADIUS, and the
> TID
> > that I referenced contains patches for each supported version of RADIUS.
> >
> > 2) If step one does not fix your problem, then please post a debug log.
> > After you have started debug logging using the "RADIUS debuglog on"
> command,
> > type "RADIUS refreshcache." This will force RADIUS to re-read the DAS
> object
> > and report any errors reading this information in the debug log. Also,
> > please capture a failed login in the debug log.
> >
> > >>> <[email protected]> 3/29/2004 4:29:56 AM >>>
> > Hi,
> >
> > I am facing the same problem. I've upgraded a bm 3.7 box on nw6 to
> bm3.8
> > on nw6.5. The radius is throwing out "unkown user". The debug log is
> > indicating an error on the password attribute.
> >
> > Any Ideas?
> >
> > Regards
> >
> > PrinceF
> >
> >
> > > I don't think that TID 10091943 is going to help. The "Unknown RADIUS
> > > Client" error indicates that RADIUS was unable to retrieve
> information
> > about
> > > a client from eDirectory. This information is stored on the DAS
> object,
> > not
> > > in the Security container. RADIUS attempts to look up the client long
> > before
> > > it attempts to access any objects in the security container when
> > processing
> > > an access-request packet. Setting rights on the security container
> > won't fix
> > > this problem, and I suspect that it was a coincidence that this
> worked
> > for
> > > someone in the past. The information in this TID is incorrect.
> > >
> > > There was a change in DS in newer NetWare service packs that breaks
> > RADIUS.
> > > TID 10081754 has more information and lists patches for supported
> > versions
> > > of RADIUS. Here's a link:
> > >
> > > http://support.novell.com/cgi-bin/se...?/10081754.htm
> > >
> > >
> > > >>> Roger Carlsson<[email protected]> 3/26/2004 8:12:10 AM >>>
> > > found it
> > > If you upgrade NetWare 6 to SP4 and eDir 873
> > >
> > > fix
> > >
> > > Check your rights. edir873 just 'changed' the rights on the security
> > > container, and the DAS object had it's rights removed on the LPO,
> > > where it should have read and browse rights.
> > >
> > > URL:
> > > http://support.novell.com/cgi-bin/se...?/10091943.htm
> > >
> > >
> > > On Fri, 26 Mar 2004 15:06:43 GMT, [email protected]
> > > wrote:
> > >
> > > >No, Roger. I did not do anything else.
> > > >
> > > >
> > > >> Did you do nothing else, like removed a replica from the server.
> > > >> I got that error after removing a relica from the radius server.
> > > >>
> > > >>
> > > >> On Fri, 26 Mar 2004 13:47:44 GMT, [email protected]
> > > >> wrote:
> > > >>
> > > >> >Hello there,
> > > >> >
> > > >> >I had RADIUS running fine on NetWare 6 SP3 and NMAS 2.2 although
> > sadly
> > > that
> > > >> >all changed after applying SP4. The RADIUS screen now
> > reports 'Unknown
> > > >> >RADIUS client' and the debug log shows -822 errors.
> > > >> >
> > > >> >Can anybody help?
> > > >> >
> > > >> >Jim.
> > > >>
> > >
> > >
> > >
> >
> >
> >
>
>
> -
hi
I keep getting error meesages on the ISE in regards to RADIUS
the error is
Dynamic Authorization failed : 1213 No response received from Network Access Device
i am using ISE version 1.1.1 and the NAD is a WLC running version 7.0.98.0
i use ISE to authenticate users via PEAP. I deleted the NAD and re-added it twice but i still keep getting this issue. this set up was working fine for the last few weeks.
i dont think location and device type would cause an issue to authentication under the NAD list
anyone have any ideas?the option i.e drop down box wasnt there. lookin at the compatibility chart of ISE 1.1.1 and WLC, minimum version for WLC is 7.2.103.0
Do you need to have RADIUS NAC enabled if the ISE is only used to authenticate corporate wireless users against AD. there is no CoA,
the other function is to use RADIUS as network management logon. to WLC using the AD. depending on the AD group , one could get priv 15 or priv 5 access. i am also using device attribute by location so that remote offices network enigineer cannot log onto the WLC. i.e i created a NAD , put it in a location and use that location AND the AD group to qualify for priv 15 access.
Coudl this policy interrupt the wireless RADIUS policy? Wireless policy is at the top of the list under authorization tab.
Maybe you are looking for
-
How do I prevent Safari from suggesting previously visited websites?
Hi all, I am going nuts here!! How do I stop Safari on my ipad mini from suggesting a long list of old websites everytime I start entering a website ? Yes, I have cleared cache and I have cleared the history as well as the Cookies & Data in Settings.
-
Hi, I have developed a report in english..But when i execute the code..i wanted all messages to be displayed in italy. Pls help Thanks
-
ALV layout in selection criteria
Dear Friends, I have created a webdynpro report with 2 views. 1st view contains all selction criteria and 2nd view contains ALV. I have created couple of layouts for ALV using settings option. By default we will have [Standard View]. Every thing work
-
Error Installing Flash on Mac Ibook G4
While installing Flash, with 8 items to go and in attempting to install "version.plist" the program has a "1008;9,-5000 Access denied error" "You do not have enough access privileges for this installation" I'm assuming this has something to do with p
-
Cloning 9iAS production instance on test environment
Hi, We have a running 9iAS portal(9.0.2.6.18) in production. We want to clone the instance on to a Staging environment. Is this possibe? If yes kindly provide the documentation link. Thanks in advance