[Bug 493169] New: Cannot connect to a WPA-Enterprise network by bare wpa_supplicant
http://bugzilla.novell.com/show_bug.cgi?id=493169 Summary: Cannot connect to a WPA-Enterprise network by bare wpa_supplicant Classification: openSUSE Product: openSUSE 11.1 Version: Final Platform: x86-64 OS/Version: openSUSE 11.1 Status: NEW Severity: Major Priority: P5 - None Component: Network AssignedTo: bnc-team-screening@forge.provo.novell.com ReportedBy: nice@titanic.nyme.hu QAContact: qa@suse.de Found By: --- User-Agent: Mozilla/5.0 (X11; U; Linux x86_64; hu-HU; rv:1.9.0.7) Gecko/2009022800 SUSE/3.0.7-1.1.6 Firefox/3.0.7 I've tried to connect to a WPA-Enterprise network by bare wpa_supplicant. At first I stopped NetworkManager and killed the wpa_supplicant and modemmanager started by it. I created the following config (by wpa_gui): milleniumfalcon:~ # cat /etc/wpa_supplicant.conf ctrl_interface=/var/run/wpa_supplicant ctrl_interface_group=wheel update_config=1 network={ ssid="NYME1" proto=RSN key_mgmt=WPA-EAP pairwise=CCMP eap=MSCHAPV2 identity="nice" password="*********" ca_cert="/home/tamas/Documents/CA/demoCA/certs/nyme.pem" id_str="" } The I started wpa_gui and wpa_supplicant, which was unable to complete the WPA connection, despite the fact that I intentionally instructed it via wpa_gui. It was able to associate, even the wpa authentication was successful, but it always disconnected, just to start again. It sometimes stuck in the associated state, sometimes in the four way handshake state, but always disconnect before total completion. See the output of wpa_supplicant: milleniumfalcon:~ # wpa_supplicant -iwlan0 -Dwext -c/etc/wpa_supplicant.conf CTRL-EVENT-SCAN-RESULTS CTRL-EVENT-SCAN-RESULTS Trying to associate with 00:1d:70:27:6d:a2 (SSID='NYME1' freq=5220 MHz) Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-SCAN-RESULTS CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-SCAN-RESULTS CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-EAP-METHOD EAP vendor 0 method 26 (MSCHAPV2) selected EAP-MSCHAPV2: Authentication succeeded CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started CTRL-EVENT-SCAN-RESULTS CTRL-EVENT-DISCONNECTED - Disconnect event - remove keys Associated with 00:1d:70:27:6d:a2 CTRL-EVENT-EAP-STARTED EAP authentication started ^CCTRL-EVENT-TERMINATING - signal 2 received Reproducible: Always Steps to Reproduce: 1. 2. 3. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=493169
Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c1
--- Comment #1 from Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c2
--- Comment #2 from Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c3
--- Comment #3 from Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User hschaa@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c4
Helmut Schaa
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c5
--- Comment #5 from Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c6
--- Comment #6 from Tamás Németh
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c7
Tamás Németh
Could you please start wpa_supplicant with -ddt parameter? That will give us more debug output. However, have a quick look at the log to be sure no secrets (passwords etc.) are included.
Thanks.
It's attached above. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
http://bugzilla.novell.com/show_bug.cgi?id=493169
User hschaa@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c8
Helmut Schaa
http://bugzilla.novell.com/show_bug.cgi?id=493169
User carlos.lange@ualberta.ca added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c9
Carlos Lange
http://bugzilla.novell.com/show_bug.cgi?id=493169
User hschaa@novell.com added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c10
--- Comment #10 from Helmut Schaa
http://bugzilla.novell.com/show_bug.cgi?id=493169
User nice@titanic.nyme.hu added comment
http://bugzilla.novell.com/show_bug.cgi?id=493169#c11
--- Comment #11 from Tamás Németh
Sorry for the long delay Tamas. I've recently pushed a wpa_supplicant update for 11.1 that might fix your problem as well.
The rpm changelog should contain the following: - Add wpa_supplicant-really_disassociate.patch (bnc#493135) - Sync 11.1 package with SLED11
Closing as FIXED. If the update does not fix your issue please reopen. Thanks a lot.
Sorry, I might be a total idiot. The wpa_supplicant.conf file, seen in the original description is WRONG. This is a working wersion: ########################################## ctrl_interface=/var/run/wpa_supplicant ctrl_interface_group=wheel update_config=1 network={ ssid="NYME1" proto=WPA key_mgmt=WPA-EAP pairwise=TKIP eap=PEAP identity="nice" password="*********" ca_cert="/usr/local/LOCALHOST/nyme.pem" id_str="" } ########################################## However, I observed one more improvement: Now I can see every SSID in only one copy in nm-applet, independently from the number of APs broadcasting that SSID. Sorry for disturbing you with this idiotic mistake. -- Configure bugmail: http://bugzilla.novell.com/userprefs.cgi?tab=email ------- You are receiving this mail because: ------- You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@novell.com