0

i'm creating a wireless network and i need to authenticate the users with EAP-SIM, i create a user with the domain of 3gpp, but when the user authenticate he cant and in the log i recive a reason-code 22. I enable all authentication types in NPS, but i recive the same error.

22 - "Network Policy Server was unable to negotiate the use of an Extensible Authentication Protocol (EAP) type with the client computer."

I don't know if the Windows server (NPS) supports EAP-SIM, if not, is there any free radius server with EAP-SIM?

All methods enable

Logs:

<Event>
   <Timestamp data_type="4">08/04/2022 15:11:25.328</Timestamp>
   <Computer-Name data_type="1">SPEEDFORCE</Computer-Name>
   <Event-Source data_type="1">IAS</Event-Source>
   <Service-Type data_type="0">1</Service-Type>
   <NAS-IP-Address data_type="3">10.20.179.253</NAS-IP-Address>
   <NAS-Identifier data_type="1">TP-Link:60-32-B1-97-E5-FB</NAS-Identifier>
   <NAS-Port data_type="0">0</NAS-Port>
   <Acct-Session-Id data_type="1">6032b197e5fb-28F0D901-00000027</Acct-Session-Id>
   <Called-Station-Id data_type="1">60-32-B1-97-E5-FB:ESAM</Called-Station-Id>
   <Calling-Station-Id data_type="1">A2-6E-83-35-E4-78</Calling-Station-Id>
   <Framed-MTU data_type="0">1400</Framed-MTU>
   <NAS-Port-Type data_type="0">19</NAS-Port-Type>
   <Connect-Info data_type="1">CONNECT 0Mbps 802.11</Connect-Info>
   <Client-IP-Address data_type="3">10.20.179.253</Client-IP-Address>
   <Client-Vendor data_type="0">0</Client-Vendor>
   <Client-Friendly-Name data_type="1">AP</Client-Friendly-Name>
   <Proxy-Policy-Name data_type="1">SIM-CARD</Proxy-Policy-Name>
   <Provider-Type data_type="0">1</Provider-Type>
   <User-Name data_type="1">99999999@aettr.pt</User-Name>
   <SAM-Account-Name data_type="1">AETTR\9999999</SAM-Account-Name>
   <Fully-Qualifed-User-Name data_type="1">AETTR\99999999999</Fully-Qualifed-User-Name>
   <Authentication-Type data_type="0">5</Authentication-Type>
   <NP-Policy-Name data_type="1">AuthSIM</NP-Policy-Name>
   <Class data_type="1">311 1 10.20.178.249 08/04/2022 14:11:06 1</Class>
   <Packet-Type data_type="0">1</Packet-Type>
   <Reason-Code data_type="0">0</Reason-Code>
</Event>
<Event>
   <Timestamp data_type="4">08/04/2022 15:11:25.328</Timestamp>
   <Computer-Name data_type="1">SPEEDFORCE</Computer-Name>
   <Event-Source data_type="1">IAS</Event-Source>
   <Class data_type="1">311 1 10.20.178.249 08/04/2022 14:11:06 1</Class>
   <Session-Timeout data_type="0">60</Session-Timeout>
   <Acct-Session-Id data_type="1">6032b197e5fb-28F0D901-00000027</Acct-Session-Id>
   <Client-IP-Address data_type="3">10.20.179.253</Client-IP-Address>
   <Client-Vendor data_type="0">0</Client-Vendor>
   <Client-Friendly-Name data_type="1">AP</Client-Friendly-Name>
   <Proxy-Policy-Name data_type="1">SIM-CARD</Proxy-Policy-Name>
   <Provider-Type data_type="0">1</Provider-Type>
   <SAM-Account-Name data_type="1">AETTR\9999999</SAM-Account-Name>
   <Fully-Qualifed-User-Name data_type="1">AETTR\9999999999</Fully-Qualifed-User-Name>
   <Authentication-Type data_type="0">5</Authentication-Type>
   <NP-Policy-Name data_type="1">AuthSIM</NP-Policy-Name>
   <Packet-Type data_type="0">11</Packet-Type>
   <Reason-Code data_type="0">0</Reason-Code>
</Event>
<Event>
   <Timestamp data_type="4">08/04/2022 15:11:25.344</Timestamp>
   <Computer-Name data_type="1">SPEEDFORCE</Computer-Name>
   <Event-Source data_type="1">IAS</Event-Source>
   <Service-Type data_type="0">1</Service-Type>
   <NAS-IP-Address data_type="3">10.20.179.253</NAS-IP-Address>
   <NAS-Identifier data_type="1">TP-Link:60-32-B1-97-E5-FB</NAS-Identifier>
   <NAS-Port data_type="0">0</NAS-Port>
   <Acct-Session-Id data_type="1">6032b197e5fb-28F0D901-00000027</Acct-Session-Id>
   <Called-Station-Id data_type="1">60-32-B1-97-E5-FB:ESAM</Called-Station-Id>
   <Calling-Station-Id data_type="1">A2-6E-83-35-E4-78</Calling-Station-Id>
   <Framed-MTU data_type="0">1400</Framed-MTU>
   <NAS-Port-Type data_type="0">19</NAS-Port-Type>
   <Connect-Info data_type="1">CONNECT 0Mbps 802.11</Connect-Info>
   <Client-IP-Address data_type="3">10.20.179.253</Client-IP-Address>
   <Client-Vendor data_type="0">0</Client-Vendor>
   <Client-Friendly-Name data_type="1">AP</Client-Friendly-Name>
   <Proxy-Policy-Name data_type="1">SIM-CARD</Proxy-Policy-Name>
   <Provider-Type data_type="0">1</Provider-Type>
   <User-Name data_type="1">99999999@aettr.pt</User-Name>
   <SAM-Account-Name data_type="1">AETTR\99999999</SAM-Account-Name>
   <Fully-Qualifed-User-Name data_type="1">AETTR\9999999</Fully-Qualifed-User-Name>
   <Authentication-Type data_type="0">5</Authentication-Type>
   <NP-Policy-Name data_type="1">AuthSIM</NP-Policy-Name>
   <Class data_type="1">311 1 10.20.178.249 08/04/2022 14:11:06 2</Class>
   <EAP-Friendly-Name data_type="1"></EAP-Friendly-Name>
   <Packet-Type data_type="0">1</Packet-Type>
   <Reason-Code data_type="0">0</Reason-Code>
</Event>
<Event>
   <Timestamp data_type="4">08/04/2022 15:11:25.344</Timestamp>
   <Computer-Name data_type="1">SPEEDFORCE</Computer-Name>
   <Event-Source data_type="1">IAS</Event-Source>
   <Class data_type="1">311 1 10.20.178.249 08/04/2022 14:11:06 2</Class>
   <Acct-Session-Id data_type="1">6032b197e5fb-28F0D901-00000027</Acct-Session-Id>
   <EAP-Friendly-Name data_type="1"></EAP-Friendly-Name>
   <Client-IP-Address data_type="3">10.20.179.253</Client-IP-Address>
   <Client-Vendor data_type="0">0</Client-Vendor>
   <Client-Friendly-Name data_type="1">AP</Client-Friendly-Name>
   <Proxy-Policy-Name data_type="1">SIM-CARD</Proxy-Policy-Name>
   <Provider-Type data_type="0">1</Provider-Type>
   <SAM-Account-Name data_type="1">AETTR\999999999</SAM-Account-Name>
   <Fully-Qualifed-User-Name data_type="1">AETTR\999999999</Fully-Qualifed-User-Name>
   <Authentication-Type data_type="0">5</Authentication-Type>
   <NP-Policy-Name data_type="1">AuthSIM</NP-Policy-Name>
   <Packet-Type data_type="0">3</Packet-Type>
   <Reason-Code data_type="0">22</Reason-Code>
</Event>
tomas
  • 101
  • 3

0 Answers0