EAP-TLS Connection Problem

Dmitry Shmidt dimitrysh
Mon Aug 4 09:13:22 PDT 2008


Hi,

If you want to increase fragment size on FreeRadius, you need to change
fragment_size value in eap.conf (in your radius config directory,
usually /etc/raddb) to desiged value.

Dmitry

On Sun, Aug 3, 2008 at 10:47 PM, Joby Thampan
<joby.thampan at smartbridges.com> wrote:
> Hi,
>
> Thanks for your reply.
>
> Is there any way to increase the fragment size at wpa_supplicant side and radius server side.
> I am using freeradius.
>
> 802.11 normally is supporting 2304 bytes i guess.
> Just to confirm whether this is a problem with fragmentation.
>
>
>
> Jouni Malinen wrote:
>> On Fri, Aug 01, 2008 at 05:46:24PM +0800, Joby Thampan wrote:
>>
>>
>>> My WPA supplicant is able to send upto
>>>
>>> EAP-Response/
>>>    EAP-Type=EAP-TLS
>>>    (TLS certificate,
>>>     TLS client_key_exchange,
>>>     TLS certificate_verify,
>>>     TLS change_cipher_spec,
>>>     TLS finished) ->
>>>
>>>
>>> but in sniffer it is showing as More Fragments to follow. But I am not seeing any fragments following it and the connection
>>> stops over there. Authenticaton Peer is waiting to recieve the next packet.
>>>
>>
>> Please take a look at what the authentication server is doing here. I
>> did not notice any problems in the supplicant log; the server just seems
>> to stop answering suddenly (it is supposed to send an empty frame to
>> request the next fragment of this message).
>>
>>
>
> _______________________________________________
> HostAP mailing list
> HostAP at lists.shmoo.com
> http://lists.shmoo.com/mailman/listinfo/hostap
>



More information about the Hostap mailing list