Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PPPoE and RADIUS failing

    Scheduled Pinned Locked Moved General pfSense Questions
    1 Posts 1 Posters 3.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      PCgeek215
      last edited by

      Hi All,

      I'm trying to configure PPPoE to use the freeRADIUS package on pfsense.
      I have added users to radius, double checked the shared keys and i'm def. putting in the right username and password when prompted.
      PPPoE authenticates fine when using the internal DB but on when using RADIUS. FYI these are on the same box and all pointing to the LAN interface. I have tried using the OSX PPPoE client and a windows client with the same result…

      Can anyone help me out with some suggestions??
      Running 2.0-RC3

      See the following logs:

      Radius.log in verbose:
      rad_recv: Access-Request packet from host 192.168.1.254:59370, id=128, length=106
              NAS-Identifier = "raph-firewall.local"
              NAS-Port = 0
              NAS-Port-Type = Ethernet
              Service-Type = Framed-User
              Framed-Protocol = PPP
              Calling-Station-Id = "0023df8bf13c"
              Called-Station-Id = "*"
              User-Name = "timr"
              User-Password = "\277\235}Jb\242\037^&L$\3206U\241"   Processing the authorize section of radiusd.conf modcall: entering group authorize for request 0   modcall[authorize]: module "preprocess" returns ok for request 0   modcall[authorize]: module "chap" returns noop for request 0   modcall[authorize]: module "mschap" returns noop for request 0     rlm_realm: No '@' in User-Name = "timr", looking up realm NULL     rlm_realm: No such realm "NULL"   modcall[authorize]: module "suffix" returns noop for request 0   rlm_eap: No EAP-Message, not doing EAP   modcall[authorize]: module "eap" returns noop for request 0   modcall[authorize]: module "files" returns notfound for request 0 rlm_counter: Entering module authorize code rlm_counter: Could not find Check item value pair   modcall[authorize]: module "daily" returns noop for request 0 rlm_counter: Entering module authorize code rlm_counter: Could not find Check item value pair   modcall[authorize]: module "weekly" returns noop for request 0 rlm_counter: Entering module authorize code rlm_counter: Could not find Check item value pair   modcall[authorize]: module "monthly" returns noop for request 0 rlm_counter: Entering module authorize code rlm_counter: Could not find Check item value pair   modcall[authorize]: module "forever" returns noop for request 0 modcall: leaving group authorize (returns ok) for request 0 auth: No authenticate method (Auth-Type) configuration found for the request: Rejecting the user auth: Failed to validate the user. Login incorrect: [timr/\277\235}Jb\242\037^&L$\3206U\241] (from client raph-firewall port 0 cli 0023df8bf13c)
        WARNING: Unprintable characters in the password. ?  Double-check the shared secret on the server and the NAS!
      Delaying request 0 for 1 seconds
      Finished request 0
      Going to the next request
      –- Walking the entire request list ---
      Waking up in 1 seconds...
      --- Walking the entire request list ---
      Waking up in 1 seconds...
      --- Walking the entire request list ---
      Sending Access-Reject of id 128 to 192.168.1.254 port 59370
      Waking up in 4 seconds...
      rad_recv: Access-Request packet from host 192.168.1.254:59370, id=128, length=106
      Sending duplicate reply to client raph-firewall:59370 - ID: 128
      Re-sending Access-Reject of id 128 to 192.168.1.254 port 59370
      Waking up in 4 seconds...
      rad_recv: Access-Request packet from host 192.168.1.254:59370, id=128, length=106
      Sending duplicate reply to client raph-firewall:59370 - ID: 128
      Re-sending Access-Reject of id 128 to 192.168.1.254 port 59370
      Waking up in 4 seconds...

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.