Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSO via Radius Accounting not working - Errors in access_server.log

Hello!

I have configured SSO via radius accounting in my home network. I use Microsoft NPS on Server 2016 as a Radius server and three access points running OpenWRT.

Radius authentication on the accesspoints is working fine and the accounting is configured to end up at the Firewall XG.

My problem now is, that XG is not recognizing any of the users authenticated to the WIFI. In the UI i do not see any messages at all. In the access_server.log however i get lots of error messages. 10.200.254.253 is one of my APs. 

I have tried on various versions of XG and also purposefully moved to a new hardware running on SFVH_SO01_SFOS 16.05.1 MR-1. 

Is there any hint you could give me how to go forward in my search?

Thanks + best regards

Michael

 

MESSAGE Mar 12 19:41:06 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:41:06 [4144719680]: handle_radius_account_req: couldn't initialize dictionary
MESSAGE Mar 12 19:41:10 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:41:10 [4144719680]: handle_radius_account_req: received radius accounting with status 1
ERROR Mar 12 19:41:10 [4144719680]: handle_radius_account_req: received radius accounting packet without login ip host
MESSAGE Mar 12 19:42:06 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:42:06 [4144719680]: handle_radius_account_req: received radius accounting with status 3
MESSAGE Mar 12 19:43:03 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:43:03 [4144719680]: handle_radius_account_req: received radius accounting with status 2
MESSAGE Mar 12 19:43:05 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:43:05 [4144719680]: handle_radius_account_req: received radius accounting with status 1
ERROR Mar 12 19:43:05 [4144719680]: handle_radius_account_req: received radius accounting packet without login ip host
MESSAGE Mar 12 19:43:19 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:43:19 [4144719680]: handle_radius_account_req: received radius accounting with status 1
ERROR Mar 12 19:43:19 [4144719680]: handle_radius_account_req: received radius accounting packet without login ip host
MESSAGE Mar 12 19:44:05 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:44:05 [4144719680]: handle_radius_account_req: received radius accounting with status 3
MESSAGE Mar 12 19:44:19 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253
ERROR Mar 12 19:44:19 [4144719680]: handle_radius_account_req: received radius accounting with status 3
MESSAGE Mar 12 19:45:05 [4144719680]: handle_radius_account_req: request received from radius client 10.200.254.253



Edited Tags
[edited by: Erick Jan at 12:43 AM (GMT -7) on 16 Sep 2022]
Parents
  • Hi,

    Same problem here.

    Unifi Access Point with Unifi Controller: configured to Synology Radius (=freeradius) for Auth and Sophos XG for Acct.

    MESSAGE   Mar 14 22:00:56 [4144740160]: handle_radius_account_req:  request received from radius client 192.168.0.35

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting with status  2

    MESSAGE   Mar 14 22:00:56 [4144740160]: handle_radius_account_req:  request received from radius client 192.168.0.35

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting with status  1

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting packet without login ip host

Reply
  • Hi,

    Same problem here.

    Unifi Access Point with Unifi Controller: configured to Synology Radius (=freeradius) for Auth and Sophos XG for Acct.

    MESSAGE   Mar 14 22:00:56 [4144740160]: handle_radius_account_req:  request received from radius client 192.168.0.35

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting with status  2

    MESSAGE   Mar 14 22:00:56 [4144740160]: handle_radius_account_req:  request received from radius client 192.168.0.35

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting with status  1

    ERROR     Mar 14 22:00:56 [4144740160]: handle_radius_account_req: received radius accounting packet without login ip host

Children
No Data