启用 server-type extended 后,无法登录设备,debug 抓包如下:
<_3600poe>
*Oct 28 12:43:46:194 2010 _3600poe RDS/7/DEBUG: Recv MSG,[MsgType=Auth request Index = 150, ulParam3=1192743456]
*Oct 28 12:43:46:195 2010 _3600poe RDS/7/DEBUG: Send attribute list:
*Oct 28 12:43:46:196 2010 _3600poe RDS/7/DEBUG:
[1 User-name ] [6 ] [lvfz]
[2 Password ] [18] [1A5859EF96FD30EC7B6699A97DD1B6CC]
[4 NAS-IP-Address ] [6 ] [*.*.73.229]
[32 NAS-Identifier ] [18] [_3600poe]
[5 NAS-Port ] [6 ] [0]
[87 NAS_Port_Id ] [34] [slot=0;subslot=0;port=0;vlanid=0]
*Oct 28 12:43:46:197 2010 _3600poe RDS/7/DEBUG:
[61 NAS-Port-Type ] [6 ] [5]
[H3C-26 Connect_ID ] [6 ] [9830401]
[6 Service-Type ] [6 ] [1]
[14 Login-Host ] [6 ] [*.*.73.229]
[31 Caller-ID ] [19] [30302D30302D30302D30302D30302D3030]
[44 Acct-Session-Id ] [18] [1100928124370010]
*Oct 28 12:43:46:197 2010 _3600poe RDS/7/DEBUG:
[8 Framed-Address ] [6 ] [*.*.1.138]
[H3C-255Product-ID ] [25] [H3C S3600V2-52TP-PWR-EI]
[H3C-60 Ip-Host-Addr ] [31] [*.*.1.138 00:00:00:00:00:00]
[H3C-59 NAS-Startup-Timestamp ] [6 ] [1262304021]
*Oct 28 12:43:46:198 2010 _3600poe RDS/7/DEBUG:
Event: Send Packet,oem(0), send count(0), primary state(0).
*Oct 28 12:43:46:199 2010 _3600poe RDS/7/DEBUG:
Event: Restart select server.
*Oct 28 12:43:46:199 2010 _3600poe RDS/7/DEBUG:
Event: Begin to switch RADIUS server when sending 0 packet.
*Oct 28 12:43:46:200 2010 _3600poe RDS/7/DEBUG:
Event: Modify NAS-IP to *.*.73.229.
*Oct 28 12:43:46:200 2010 _3600poe RDS/7/DEBUG: Send: IP=[*.*.1.71], UserIndex=[150], ID=[112], RetryTimes=[0], Code=[1], Length=[243]
*Oct 28 12:43:46:201 2010 _3600poe RDS/7/DEBUG:
Event: Set socket VPN attribute, VPN index=0, Result=0!
*Oct 28 12:43:46:202 2010 _3600poe RDS/7/DEBUG: Send Raw Packet is:
*Oct 28 12:43:46:203 2010 _3600poe RDS/7/DEBUG:
01 70 00 f3 74 af 6b d8 6c 7b 29 83 ca 1f ca da
6f 1e 4b 36 01 06 6c 76 66 7a 02 12 1a 58 59 ef
96 fd 30 ec 7b 66 99 a9 7d d1 b6 cc 04 06 0a f3
49 e5 20 12 70 61 71 68 5f 33 36 30 30 70 6f 65
5f 32 32 39 05 06 00 00 00 00 57 22 73 6c 6f 74
3d 30 3b 73 75 62 73 6c 6f 74 3d 30 3b 70 6f 72
74 3d 30 3b 76 6c 61 6e 69 64 3d 30 3d 06 00 00
00 05 06 06 00 00 00 01 0e 06 0a f3 49 e5 1f 13
30 30 2d 30 30 2d 30 30 2d 30 30 2d 30 30 2d 30
30 2c 12 31 31 30 30 39 32 38 31 32 34 33 37 30
30 31 30 08 06 0a 11 01 8a 1a 4a 00 00 07 db 1a
06 00 96 00 01 ff 19 48 33 43 20 53 33 36 30 30
56 32 2d 35 32 54 50 2d 50 57 52 2d 45 49 3c 1f
31 30 2e 31 37 2e 31 2e 31 33 38 20 30 30 3a 30
30 3a 30 30 3a 30 30 3a 30 30 3a 30 30 3b 06 4b
3d 3b 15
*Oct 28 12:43:46:213 2010 _3600poe RDS/7/DEBUG: Recv MSG,[MsgType=PKT response Index = 156, ulParam3=1193456752]
*Oct 28 12:43:46:214 2010 _3600poe RDS/7/DEBUG: Receive Raw Packet is:
*Oct 28 12:43:46:215 2010 _3600poe RDS/7/DEBUG:
02 70 00 9c 83 05 4c c7 53 2f 09 8a 83 cc 34 82
2b 65 57 58 1a 0c 00 00 6f 8d 04 06 00 00 00 3f
1a 0c 00 00 6f 8d 03 06 00 00 00 02 1a 0c 00 00
6f 8d 02 06 00 00 00 1f 1a 0c 00 00 6f 8d 01 06
00 00 00 00 1a 0c 00 00 07 db 1d 06 00 00 00 03
06 06 00 00 00 01 19 2e 9a a1 08 ef 00 00 01 37
00 01 02 00 0a 11 01 47 00 00 00 00 e1 87 af 7c
18 db 2b b1 01 da 44 7c 5a 67 c9 61 00 00 00 00
00 00 00 68 1a 0c 00 00 01 37 0e 06 00 00 00 32
1a 0c 00 00 01 37 0f 06 00 00 00 78
*Oct 28 12:43:46:215 2010 _3600poe RDS/7/DEBUG: Receive:IP=[*.*.1.71],Code=[2],Length=[156]
*Oct 28 12:43:46:216 2010 _3600poe RDS/7/DEBUG:
[H3C-29 Exec_Privilege ] [6 ] [3]
[6 Service-Type ] [6 ] [1]
[25 Class ] [46] [9AA108EF00000137000102000A11014700000000E187AF7C18DB2BB101DA447C5A67C9610000000000000068]
*Oct 28 12:43:46:217 2010 _3600poe RDS/7/DEBUG: Reject, Message=[Admin user's login type mismatches the radius server assigned !]
#Oct 28 12:43:47:214 2010 _3600poe SSH/4/TrapAuthFailed:
*.*.6.1.*.*.25506.2.*.*.3.0.1<hh3cSSHUserAuthFailure> SSH authentication fail trap information
dis version
H3C Comware Platform Software
Comware Software, Version 5.20, Release 2108P01
Copyright (c) 2004-2013 Hangzhou H3C Tech. Co., Ltd. All rights reserved.
H3C S3600V2-52TP-PWR-EI uptime is 42 weeks, 6 days, 4 hours, 28 minutes
H3C S3600V2-52TP-PWR-EI with 1 Processor
256M bytes SDRAM
2M bytes Nor Flash Memory
128M bytes Nand Flash Memory
Config Register points to Nand Flash
Hardware Version is Ver.A
CPLD Version is 001
BootRom Version is 125
[SubSlot 0] 48FE+4SFP+2Combo GE+POE Hardware Version is Ver.A
(0)
最佳答案
您好,参考
【命令】server-type { extended | standard }undo server-type【视图】RADIUS方案视图【缺省级别】2:系统级【参数】extended:指定extended类型的RADIUS服务器(一般为CAMS/iMC),即要求RADIUS客户端和RADIUS服务器按照私有RADIUS协议的规程和报文格式进行交互。standard:指定standard类型的RADIUS服务器,即要求RADIUS客户端和RADIUS服务器按照标准RADIUS协议(RFC 2865/2866或更新)的规程和报文格式进行交互。【描述】server-type命令用来配置设备支持的RADIUS服务器类型。undo server-type命令用来恢复缺省情况。缺省情况下,设备支持的RADIUS服务器类型为standard。相关配置可参考命令radius scheme。【举例】# 将RADIUS方案radius1的RADIUS服务器类型设置为standard。
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论