RADIUS WIFI

Forum dédié aux discussions concernant les réseaux sans fil tels que IEEE 802.11a, 802.11b, bluetooth et tous les autres standards que l'on peut trouver sur le marché.

Modérateur: modos Ixus

Messagepar albatore » 05 Jan 2004 11:20

Bonjour, <BR> <BR> Je fais mon TFE (Travail de fin d'etude) sur les failles et la <BR>sécurisation des reseaux WIRELESS. <BR> Donc nous avons fait une identification par radius. Mais de peur de mal <BR> m'exprimer je joins un document qui explique toute la manipulation que <BR>j'ai suivi. <BR> C'est un document que j'ai trouve sur internet. <BR> <!-- BBCode auto-link start --><a href="http://www.koumoula.com/wifi/eap-tls/eap-tls.htm" target="_blank">http://www.koumoula.com/wifi/eap-tls/eap-tls.htm</a><!-- BBCode auto-link end --> <BR> <BR> Mon probleme est le suivant, j'ai bien fait le dcpromo, le serveur Radius <BR> comme il l'explique dans le document. Mais lorsque je me connecte via un <BR> porable sans fils sur le point d'acces, il me met -Validation de l'identité -> je choisi mon certificat et il reste sur validation de l'identité avec "?" sur la connexion. <BR> Pourriez vous m'aider ou me guider sur une maniere d'operer ou de resoudre <BR> mon probleme ? <BR> <BR> Merci de vos reponse. <BR> <BR> Moi <BR> <IMG SRC="images/smiles/icon_confused.gif">
moi fou....non
Avatar de l’utilisateur
albatore
Quartier Maître
Quartier Maître
 
Messages: 24
Inscrit le: 28 Sep 2003 00:00
Localisation: belgique

Messagepar albatore » 05 Jan 2004 11:21

Hier j'ai refait la manip, <BR>en fait dans le document il est indiqué d'activer le wep et de laisser la <BR>valeur par défaut 0000000..... <BR>et il faut configurer l'authentification sur le point d'accès en Open <BR>System. Ce que j'ai fait...... <BR>J'ai activé les LOG sur le 2003 serveur par les commandes : netsh ras set <BR>tracing eapol enabled et netsh ras set tracing rastls enabled <BR>je vous envoi une copie d'une partie de celui - çi est ce que quelqu'un peut <BR>m'indiquer ce qui cloche et m'expliquer en gros ce log <IMG SRC="images/smiles/icon_smile.gif"> <BR>-->RASTLS.LOG <BR>[3000] 17:58:25:337: EapTlsBegin(WIRELESSjerome) <BR>[3000] 17:58:25:337: SetupMachineChangeNotification <BR>[3000] 17:58:25:337: State change to Initial <BR>[3000] 17:58:25:337: MaxTLSMessageLength is now 16384 <BR>[3000] 17:58:25:337: CRYPT_E_NO_REVOCATION_CHECK will not be ignored <BR>[3000] 17:58:25:337: CRYPT_E_REVOCATION_OFFLINE will not be ignored <BR>[3000] 17:58:25:337: The root cert will not be checked for revocation <BR>[3000] 17:58:25:337: The cert will be checked for revocation <BR>[3000] 17:58:25:337: <BR>[3000] 17:58:25:337: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:25:337: >> Received Response (Code: 2) packet: Id: 61, Length: <BR>24, Type: 0, TLS blob length: 0. Flags: <BR>[3000] 17:58:25:337: EapTlsSMakeMessage <BR>[3000] 17:58:25:337: EapTlsReset <BR>[3000] 17:58:25:337: State change to Initial <BR>[3000] 17:58:25:337: GetCredentials <BR>[3000] 17:58:25:337: Flag is Server and Store is local Machine <BR>[3000] 17:58:25:337: GetCachedCredentials Flags = 0x61 <BR>[3000] 17:58:25:337: GetCachedCredentials: Using Cached Credentials <BR>[3000] 17:58:25:337: GetCachedCredentials: Hash of the cert in the cache is <BR> <BR> 4 3 A E 5 8 9 F 4 F D 8 7 B 0 3 5 A C 3 B 0 4 D 3 C <BR>4 8 6 B 1 7 | C . X . O . { . Z . . M < H k . | <BR> <BR> 7 1 8 D 0 B B E 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 <BR>0 0 0 0 0 0 | q . . . . . . . . . . . . . . . | <BR>[3000] 17:58:25:337: BuildPacket <BR>[3000] 17:58:25:337: << Sending Request (Code: 1) packet: Id: 62, Length: 6, <BR>Type: 13, TLS blob length: 0. Flags: S <BR>[3000] 17:58:25:337: State change to SentStart <BR>[3000] 17:58:25:337: EapTlsEnd <BR>[3000] 17:58:25:337: EapTlsEnd(wirelessjerome) <BR>[3564] 17:58:25:387: <BR>[3564] 17:58:25:387: EapTlsMakeMessage(wirelessjerome) <BR>[3564] 17:58:25:387: >> Received Response (Code: 2) packet: Id: 62, Length: <BR>80, Type: 13, TLS blob length: 70. Flags: L <BR>[3564] 17:58:25:387: EapTlsSMakeMessage <BR>[3564] 17:58:25:387: MakeReplyMessage <BR>[3564] 17:58:25:387: Reallocating input TLS blob buffer <BR>[3564] 17:58:25:387: SecurityContextFunction <BR>[3564] 17:58:25:387: AcceptSecurityContext returned 0x90312 <BR>[3564] 17:58:25:387: State change to SentHello <BR>[3564] 17:58:25:387: BuildPacket <BR>[3564] 17:58:25:387: << Sending Request (Code: 1) packet: Id: 63, Length: <BR>1376, Type: 13, TLS blob length: 4717. Flags: LM <BR>[3000] 17:58:25:387: <BR>[3000] 17:58:25:387: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:25:387: >> Received Response (Code: 2) packet: Id: 63, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3000] 17:58:25:387: EapTlsSMakeMessage <BR>[3000] 17:58:25:387: BuildPacket <BR>[3000] 17:58:25:387: << Sending Request (Code: 1) packet: Id: 64, Length: <BR>1376, Type: 13, TLS blob length: 0. Flags: M <BR>[3564] 17:58:25:397: <BR>[3564] 17:58:25:397: EapTlsMakeMessage(wirelessjerome) <BR>[3564] 17:58:25:397: >> Received Response (Code: 2) packet: Id: 64, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3564] 17:58:25:397: EapTlsSMakeMessage <BR>[3564] 17:58:25:397: BuildPacket <BR>[3564] 17:58:25:397: << Sending Request (Code: 1) packet: Id: 65, Length: <BR>1376, Type: 13, TLS blob length: 0. Flags: M <BR>[3000] 17:58:25:407: <BR>[3000] 17:58:25:407: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:25:407: >> Received Response (Code: 2) packet: Id: 65, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3000] 17:58:25:407: EapTlsSMakeMessage <BR>[3000] 17:58:25:407: BuildPacket <BR>[3000] 17:58:25:407: << Sending Request (Code: 1) packet: Id: 66, Length: <BR>617, Type: 13, TLS blob length: 0. Flags: <BR>[3000] 17:58:55:471: <BR>[3000] 17:58:55:471: EapTlsBegin(WIRELESSjerome) <BR>[3000] 17:58:55:471: SetupMachineChangeNotification <BR>[3000] 17:58:55:471: State change to Initial <BR>[3000] 17:58:55:471: MaxTLSMessageLength is now 16384 <BR>[3000] 17:58:55:471: CRYPT_E_NO_REVOCATION_CHECK will not be ignored <BR>[3000] 17:58:55:471: CRYPT_E_REVOCATION_OFFLINE will not be ignored <BR>[3000] 17:58:55:471: The root cert will not be checked for revocation <BR>[3000] 17:58:55:471: The cert will be checked for revocation <BR>[3000] 17:58:55:471: <BR>[3000] 17:58:55:471: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:55:471: >> Received Response (Code: 2) packet: Id: 67, Length: <BR>24, Type: 0, TLS blob length: 0. Flags: <BR>[3000] 17:58:55:471: EapTlsSMakeMessage <BR>[3000] 17:58:55:471: EapTlsReset <BR>[3000] 17:58:55:471: State change to Initial <BR>[3000] 17:58:55:471: GetCredentials <BR>[3000] 17:58:55:471: Flag is Server and Store is local Machine <BR>[3000] 17:58:55:471: GetCachedCredentials Flags = 0x61 <BR>[3000] 17:58:55:471: GetCachedCredentials: Using Cached Credentials <BR>[3000] 17:58:55:471: GetCachedCredentials: Hash of the cert in the cache is <BR> <BR> 4 3 A E 5 8 9 F 4 F D 8 7 B 0 3 5 A C 3 B 0 4 D 3 C <BR>4 8 6 B 1 7 | C . X . O . { . Z . . M < H k . | <BR> <BR> 7 1 8 D 0 B B E 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 <BR>0 0 0 0 0 0 | q . . . . . . . . . . . . . . . | <BR>[3000] 17:58:55:471: BuildPacket <BR>[3000] 17:58:55:471: << Sending Request (Code: 1) packet: Id: 68, Length: 6, <BR>Type: 13, TLS blob length: 0. Flags: S <BR>[3000] 17:58:55:471: State change to SentStart <BR>[3000] 17:58:55:471: EapTlsEnd <BR>[3000] 17:58:55:471: EapTlsEnd(wirelessjerome) <BR>[3564] 17:58:55:671: <BR>[3564] 17:58:55:671: EapTlsMakeMessage(wirelessjerome) <BR>[3564] 17:58:55:671: >> Received Response (Code: 2) packet: Id: 68, Length: <BR>80, Type: 13, TLS blob length: 70. Flags: L <BR>[3564] 17:58:55:671: EapTlsSMakeMessage <BR>[3564] 17:58:55:671: MakeReplyMessage <BR>[3564] 17:58:55:671: Reallocating input TLS blob buffer <BR>[3564] 17:58:55:671: SecurityContextFunction <BR>[3564] 17:58:55:671: AcceptSecurityContext returned 0x90312 <BR>[3564] 17:58:55:671: State change to SentHello <BR>[3564] 17:58:55:671: BuildPacket <BR>[3564] 17:58:55:671: << Sending Request (Code: 1) packet: Id: 69, Length: <BR>1376, Type: 13, TLS blob length: 4717. Flags: LM <BR>[3000] 17:58:55:681: <BR>[3000] 17:58:55:681: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:55:681: >> Received Response (Code: 2) packet: Id: 69, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3000] 17:58:55:681: EapTlsSMakeMessage <BR>[3000] 17:58:55:681: BuildPacket <BR>[3000] 17:58:55:681: << Sending Request (Code: 1) packet: Id: 70, Length: <BR>1376, Type: 13, TLS blob length: 0. Flags: M <BR>[3564] 17:58:55:691: <BR>[3564] 17:58:55:691: EapTlsMakeMessage(wirelessjerome) <BR>[3564] 17:58:55:691: >> Received Response (Code: 2) packet: Id: 70, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3564] 17:58:55:691: EapTlsSMakeMessage <BR>[3564] 17:58:55:691: BuildPacket <BR>[3564] 17:58:55:691: << Sending Request (Code: 1) packet: Id: 71, Length: <BR>1376, Type: 13, TLS blob length: 0. Flags: M <BR>[3000] 17:58:55:691: <BR>[3000] 17:58:55:691: EapTlsMakeMessage(wirelessjerome) <BR>[3000] 17:58:55:691: >> Received Response (Code: 2) packet: Id: 71, Length: <BR>6, Type: 13, TLS blob length: 0. Flags: <BR>[3000] 17:58:55:691: EapTlsSMakeMessage <BR>[3000] 17:58:55:691: BuildPacket <BR>[3000] 17:58:55:691: << Sending Request (Code: 1) packet: Id: 72, Length: <BR>617, Type: 13, TLS blob length: 0. Flags: <BR>[2968] 17:59:19:686: EapTlsEnd <BR>[2968] 17:59:19:686: EapTlsEnd(wirelessjerome) <BR>[2968] 17:59:19:686: EapTlsEnd <BR>[2968] 17:59:19:686: EapTlsEnd(wirelessjerome) <BR>[2968] 17:59:19:686: EapTlsEnd <BR>[2968] 17:59:19:686: EapTlsEnd(wirelessjerome) <BR>[2968] 17:59:19:686: EapTlsEnd <BR>[2968] 17:59:19:686: EapTlsEnd(wirelessjerome) <BR>[4080] 17:59:20:417: MachineStoreChangeNotification <BR>[856] 17:59:21:478: EapTls[Un]Initialize2 <BR> <BR> <BR>--> EAPOL.LOG <BR> <BR>ElSessionChangeHandler: LOGOFF for session=(0) <BR>[892] 17:58:59: ElUserLogoffCallback: UserloggedOff = 0 <BR>[892] 17:58:59: ElEapEnd entered <BR>[892] 17:58:59: FSMLogoff entered for port Contrôleur Fast Ethernet intégré <BR>3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: ElEapEnd entered <BR>[892] 17:58:59: Setting state LOGOFF for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: FSMLogoff completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: ElReStartPort: Entered: Refcnt = 2 <BR>[892] 17:58:59: ElGetInterfaceNdisStatistics: pwszDeviceInterfaceName = <BR>(Device{AE1DE463-3A28-466E-8832-92751E395E64}) <BR>[892] 17:58:59: ElReadPerPortRegistryParams: dwTotalMaxAuthFailCount = (3) <BR>[892] 17:58:59: FSMConnecting entered for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: TIMER: Restart PCB Time: 1 <BR>[892] 17:58:59: Setting state CONNECTING for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: FSMConnecting completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:58:59: ElUserLogoffCallback: completed <BR>[892] 17:59:00: ElTimeoutCallbackRoutine entered <BR>[892] 17:59:00: FSMConnecting entered for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:00: TIMER: Restart PCB Time: 1 <BR>[892] 17:59:00: Setting state CONNECTING for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:00: FSMConnecting completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:00: ElTimeoutCallbackRoutine completed <BR>[892] 17:59:01: ElTimeoutCallbackRoutine entered <BR>[892] 17:59:01: FSMConnecting entered for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:01: TIMER: Restart PCB Time: 1 <BR>[892] 17:59:01: Setting state CONNECTING for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:01: FSMConnecting completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:01: ElTimeoutCallbackRoutine completed <BR>[892] 17:59:02: ElTimeoutCallbackRoutine entered <BR>[892] 17:59:02: FSMConnecting entered for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:02: TIMER: Restart PCB Time: 2097148 <BR>[892] 17:59:02: FSMConnecting: Sent out maxStart with no response, Setting <BR>AUTHENTICATED state <BR>[892] 17:59:02: FSMAuthenticated entered for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:02: ElEapEnd entered <BR>[892] 17:59:02: Setting state AUTHENTICATED for port Contrôleur Fast <BR>Ethernet intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:02: FSMAuthenticated completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:02: FSMConnecting completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[892] 17:59:02: ElTimeoutCallbackRoutine completed <BR>[856] 17:59:20: ElMediaDeInit: Entered <BR>[856] 17:59:20: ElMediaDeInit: No worker threads alive, exiting <BR>[856] 17:59:20: ElMediaDeInit: (0) - (0) worker threads still alive <BR>[856] 17:59:20: ElEAPOLDeInit entered <BR>[856] 17:59:20: FSMLogoff entered for port Contrôleur Fast Ethernet intégré <BR>3Com 3C918 (compatible 3C905B-TX) <BR>[856] 17:59:20: ElEapEnd entered <BR>[856] 17:59:20: Setting state LOGOFF for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[856] 17:59:20: FSMLogoff completed for port Contrôleur Fast Ethernet <BR>intégré 3Com 3C918 (compatible 3C905B-TX) <BR>[856] 17:59:20: ElEapEnd entered <BR>[856] 17:59:20: ElEAPOLDeInit: DeleteTimer (000A0998), queue (00095F68) <BR>[856] 17:59:20: <BR>ElCloseInterfaceHandle(0x294,{AE1DE463-3A28-466E-8832-92751E395E64}) entered <BR>[856] 17:59:20: ElEAPOLDeInit: Waiting for 1 PCB contexts to terminate ... <BR>[168] 17:59:20: ElIoCompletionRoutine called, 0 bytes xferred <BR>[168] 17:59:20: ElReadCompletionRoutine entered, 0 bytes recvd <BR>[168] 17:59:20: ElReadCompletionRoutine: Error -1073741536 on port <BR>{AE1DE463-3A28-466E-8832-92751E395E64} <BR>[168] 17:59:20: ElReadCompletionRoutine: Port <BR>{AE1DE463-3A28-466E-8832-92751E395E64} not active <BR>[168] 17:59:20: ElReadCompletionRoutine: pPCB= 000A1F88, RefCnt = 1 <BR>[168] 17:59:20: ElCleanupPort entered for <BR>{AE1DE463-3A28-466E-8832-92751E395E64} <BR>[168] 17:59:20: ElCleanupPort completed <BR>[856] 17:59:21: ElEAPOLDeInit completed, RetCode = 0 <BR>[856] 17:59:21: ElMediaDeInit: ElEAPOLDeInit successful <BR>[856] 17:59:21: ElMediaDeInit completed <BR>[856] 17:59:21: Media DeInit succeeded with dwRetCode = 0 <BR> <BR>[856] 17:59:21: EAPOLCleanup completed with error 0 <BR> <BR> <BR> <BR>MERCI POUR VOTRE AIDE !!! <BR>
moi fou....non
Avatar de l’utilisateur
albatore
Quartier Maître
Quartier Maître
 
Messages: 24
Inscrit le: 28 Sep 2003 00:00
Localisation: belgique

Messagepar albatore » 06 Jan 2004 19:39

personne ???
moi fou....non
Avatar de l’utilisateur
albatore
Quartier Maître
Quartier Maître
 
Messages: 24
Inscrit le: 28 Sep 2003 00:00
Localisation: belgique

Messagepar klimmrod » 06 Jan 2004 19:48

Désolé, mais je ne peux pas te répondre mais une question tu fais quoi comme étude ? <BR> <BR>
Avatar de l’utilisateur
klimmrod
Premier-Maître
Premier-Maître
 
Messages: 58
Inscrit le: 31 Oct 2003 01:00
Localisation: Belgique,Luxembourg

Messagepar albatore » 06 Jan 2004 19:49

je suis en informatique industrielle option télécom et réseaux pq ?? <BR>et toi ? tu es d'ou de belgique <IMG SRC="images/smiles/icon_smile.gif">
moi fou....non
Avatar de l’utilisateur
albatore
Quartier Maître
Quartier Maître
 
Messages: 24
Inscrit le: 28 Sep 2003 00:00
Localisation: belgique


Retour vers Réseaux sans fil

Qui est en ligne ?

Utilisateur(s) parcourant actuellement ce forum : Aucun utilisateur inscrit et 1 invité

cron