Трафик между порталом и радиусом ходит любой. Между нормально работающим насом cisco и радиусом постоянно происходит обмен: -------------------- 13:54:43.117293 IP (ip nas cisco).1646 > (ip dialup radius).1813: RADIUS, Accounting Request (4), id: 0x75 length: 321 13:54:43.122194 IP (ip dialup radius).1813 > (ip nas cisco).1646: RADIUS, Accounting Response (5), id: 0x75 length: 20
Теперь вывод дампа пакетов при авторизации на портале, активной работы под логином в течении пары минут и выход: -------------------- авторизация ..... 13:57:25.217916 IP (ip nas wifi).52776 > (ip dialup radius).1812: RADIUS, Access Request (1), id: 0xed length: 80 13:57:25.217934 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.217943 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.252434 IP (ip dialup radius).1812 > (ip nas wifi).52776: RADIUS, Access Accept (2), id: 0xed length: 303 13:57:25.263856 IP (ip nas wifi).41006 > (ip dialup radius).1813: RADIUS, Accounting Request (4), id: 0xee length: 63 13:57:25.263882 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.263889 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.264540 IP (ip dialup radius).1813 > (ip nas wifi).41006: RADIUS, Accounting Response (5), id: 0xee length: 20 13:57:25.345607 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [S], seq 571315616, win 14600, options [mss 1460,sackOK,TS val 180593126 ecr 0,nop,wscale 6] 13:57:25.345778 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [S.], seq 3600241696, ack 571315617, win 5792, options [mss 1460,sackOK,TS val 4201078 ecr 1 13:57:25.345814 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [.], ack 1, win 229, options [nop,nop,TS val 180593126 ecr 4201078], length 0 13:57:25.346477 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [P.], seq 1:289, ack 1, win 229, options [nop,nop,TS val 180593127 ecr 4201078], length 288 13:57:25.346506 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [P.], seq 289:390, ack 1, win 229, options [nop,nop,TS val 180593127 ecr 4201078], length 10 13:57:25.346653 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [.], ack 289, win 108, options [nop,nop,TS val 4201079 ecr 180593127], length 0 13:57:25.346670 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [.], ack 390, win 108, options [nop,nop,TS val 4201079 ecr 180593127], length 0 13:57:25.370394 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [P.], seq 1:396, ack 390, win 108, options [nop,nop,TS val 4201102 ecr 180593127], length 39 13:57:25.370445 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [.], ack 396, win 245, options [nop,nop,TS val 180593151 ecr 4201102], length 0 13:57:25.371198 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [P.], seq 396:401, ack 390, win 108, options [nop,nop,TS val 4201103 ecr 180593151], length 13:57:25.371250 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [.], ack 401, win 245, options [nop,nop,TS val 180593152 ecr 4201103], length 0 13:57:35.372391 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [F.], seq 390, ack 401, win 245, options [nop,nop,TS val 180603153 ecr 4201103], length 0 13:57:35.372658 IP (ip dialup radius).8080 > (ip nas wifi).41884: Flags [F.], seq 401, ack 391, win 108, options [nop,nop,TS val 4211105 ecr 180603153], length 0 13:57:35.372691 IP (ip nas wifi).41884 > (ip dialup radius).8080: Flags [.], ack 402, win 245, options [nop,nop,TS val 180603153 ecr 4211105], length 0 .... в это время я активно юзал интернет, но никакой активности между порталом и радиусом нет, ни с той ни с другой стороны .... выход (нажал кнопочку выход на странице портала) 13:59:50.166335 IP (ip nas wifi).37323 > (ip dialup radius).1813: RADIUS, Accounting Request (4), id: 0xef length: 69 13:59:50.166360 IP (ip nas wifi) > (ip dialup radius): udp 13:59:50.166367 IP (ip nas wifi) > (ip dialup radius): udp 13:59:50.166988 IP (ip dialup radius).1813 > (ip nas wifi).37323: RADIUS, Accounting Response (5), id: 0xef length: 20
Тот же дамп, только на радиус-сервере -------------------- авторизация... 13:57:25.226516 IP (ip nas wifi).52776 > (ip dialup radius).1812: RADIUS, Access Request (1), id: 0xed length: 80 13:57:25.226533 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.226538 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.260843 IP (ip dialup radius).1812 > (ip nas wifi).52776: RADIUS, Access Accept (2), id: 0xed length: 303 13:57:25.272463 IP (ip nas wifi).41006 > (ip dialup radius).1813: RADIUS, Accounting Request (4), id: 0xee length: 63 13:57:25.272474 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.272479 IP (ip nas wifi) > (ip dialup radius): udp 13:57:25.272963 IP (ip dialup radius).1813 > (ip nas wifi).41006: RADIUS, Accounting Response (5), id: 0xee length: 20 13:57:25.354160 IP (ip nas wifi).41884 > (ip dialup radius).8080: S 571315616:571315616(0) win 14600 <mss 1460,sackOK,timestamp 180593126 0,nop,wscale 6> 13:57:25.354203 IP (ip dialup radius).8080 > (ip nas wifi).41884: S 3600241696:3600241696(0) ack 571315617 win 5792 <mss 1460,sackOK,timestamp 4201078 180593126,nop 13:57:25.354341 IP (ip nas wifi).41884 > (ip dialup radius).8080: . ack 1 win 229 <nop,nop,timestamp 180593126 4201078> 13:57:25.355036 IP (ip nas wifi).41884 > (ip dialup radius).8080: P 1:289(288) ack 1 win 229 <nop,nop,timestamp 180593127 4201078> 13:57:25.355063 IP (ip dialup radius).8080 > (ip nas wifi).41884: . ack 289 win 108 <nop,nop,timestamp 4201079 180593127> 13:57:25.355073 IP (ip nas wifi).41884 > (ip dialup radius).8080: P 289:390(101) ack 1 win 229 <nop,nop,timestamp 180593127 4201078> 13:57:25.355083 IP (ip dialup radius).8080 > (ip nas wifi).41884: . ack 390 win 108 <nop,nop,timestamp 4201079 180593127> 13:57:25.378796 IP (ip dialup radius).8080 > (ip nas wifi).41884: P 1:396(395) ack 390 win 108 <nop,nop,timestamp 4201102 180593127> 13:57:25.378978 IP (ip nas wifi).41884 > (ip dialup radius).8080: . ack 396 win 245 <nop,nop,timestamp 180593151 4201102> 13:57:25.379619 IP (ip dialup radius).8080 > (ip nas wifi).41884: P 396:401(5) ack 390 win 108 <nop,nop,timestamp 4201103 180593151> 13:57:25.379788 IP (ip nas wifi).41884 > (ip dialup radius).8080: . ack 401 win 245 <nop,nop,timestamp 180593152 4201103> 13:57:35.380944 IP (ip nas wifi).41884 > (ip dialup radius).8080: F 390:390(0) ack 401 win 245 <nop,nop,timestamp 180603153 4201103> 13:57:35.381100 IP (ip dialup radius).8080 > (ip nas wifi).41884: F 401:401(0) ack 391 win 108 <nop,nop,timestamp 4211105 180603153> 13:57:35.381234 IP (ip nas wifi).41884 > (ip dialup radius).8080: . ack 402 win 245 <nop,nop,timestamp 180603153 4211105>
работа...
выход... 13:59:50.175011 IP (ip nas wifi).37323 > (ip dialup radius).1813: RADIUS, Accounting Request (4), id: 0xef length: 69 13:59:50.175025 IP (ip nas wifi) > (ip dialup radius): udp 13:59:50.175031 IP (ip nas wifi) > (ip dialup radius): udp 13:59:50.175473 IP (ip dialup radius).1813 > (ip nas wifi).37323: RADIUS, Accounting Response (5), id: 0xef length: 20
Если смотреть на рабочий нас циско, то там постоянно с радиуса идут на нас Accounting Request, а в ответ от наса Accounting Response. Т.е. запрос инициируется радиусом. Смею предположить что не отрабатывает сервер биллинга, не посылая запросы на портал. Или начальная процедура авторизации пользователя не проходит успешно. Старт пакет не приходит от наса или еще что-то. Теряюсь в догадках.
_________________ Сервер: вер. 5.2 сборка 1442 от 11.03.2013 20:09:04 os: Linux; java: Java HotSpot(TM) Server VM, v.1.6.0_33 card вер. 5.2 сборка 199 от 05.03.2013 15:29:28 dialup вер. 5.2 сборка 375 от 28.02.2013 18:32:25 WiFi агент 5.2_222
|