Re: Bad authenticator:

Dale E. Reed Jr. ( (no email) )
Wed, 28 May 1997 21:05:52 -0700

Greg Lowthian wrote:
>
> >If you are running RadiusNT 1.16.60 or higher, do NOT set the -A
> >command line option or the Req Auth in the accounting section of the
> >RadiusNT admin.
> >
> I have them off and no secret on the PM's this is what I get.

What exactly do you mean by "no secret on the PM"? You should
have a secret on the PM and the SAME secret in RadiusNT for the
PM.

> Acct-Session-Id = "0C000014"
> User-Name = "cmwilson"
> NAS-Identifier = 199.107.164.3
> NAS-Port = 16
> NAS-Port-Type = Async
> Acct-Status-Type = Stop
> Acct-Session-Time = 55
> Acct-Authentic = RADIUS
> Acct-Input-Octets = 4198
> Acct-Output-Octets = 39829
> Acct-Terminate-Cause = User-Request
> User-Service = Framed-User
> Framed-Protocol = PPP
> Framed-Address = 199.107.164.101
> Acct-Delay-Time = 0
> LOG: Bad authenticator: from lpm2.isat.com - ID: 55

This only happens if one of the two options from above are enabled.

> SQL Statement: UPDATE CallsOnline Set AcctStatusType=2,
> CallDate=GetDate() WHERE NASIdentifier='199.107.164.3'
>
> Sending Accounting Ack of id 55 to c76ba403 (lpm2.isat.com)

Atleast that versiosn broke and acks the accounting even if the
secret doesn't match! :)

-- Dale E. Reed Jr.  (daler@iea.com)_________________________________________________________________       IEA Software, Inc.      |  RadiusNT, Emerald, and NT FAQs Internet Solutions for Today  |    http://www.emerald.iea.com