Reading configuration file 'arendtsen-secure.conf' Line: 4 - start of a new network block key_mgmt: 0x1 eap methods - hexdump(len=16): 00 00 00 00 0d 00 00 00 00 00 00 00 00 00 00 00 anonymous_identity - hexdump_ascii(len=32): 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 6bd4a86988324e56 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 b2dcdcf053161a02 client_cert - hexdump_ascii(len=27): 2f 68 6f 6d 65 2f 6d 61 72 74 69 6e 2f 73 73 6c /home/martin/ssl 2f 64 65 62 69 61 6e 2e 63 72 74 /debian.crt private_key - hexdump_ascii(len=27): 2f 68 6f 6d 65 2f 6d 61 72 74 69 6e 2f 73 73 6c /home/martin/ssl 2f 64 65 62 69 61 6e 2e 6b 65 79 /debian.key Priority group 0 id=0 ssid='' Authentication server 192.168.254.16:1812 RADIUS local address: 10.0.2.15:58855 ENGINE: Loading builtin engines ENGINE: Loading builtin engines EAPOL: SUPP_PAE entering state DISCONNECTED EAPOL: KEY_RX entering state NO_KEY_RECEIVE EAPOL: SUPP_BE entering state INITIALIZE EAP: EAP entering state DISABLED EAPOL: External notification - portValid=0 EAPOL: External notification - portEnabled=1 EAPOL: SUPP_PAE entering state CONNECTING EAPOL: SUPP_BE entering state IDLE EAP: EAP entering state INITIALIZE EAP: EAP entering state IDLE Sending fake EAP-Request-Identity EAPOL: Received EAP-Packet frame EAPOL: SUPP_PAE entering state RESTART EAP: EAP entering state INITIALIZE EAP: EAP entering state IDLE EAPOL: SUPP_PAE entering state AUTHENTICATING EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=146 method=1 vendor=0 vendorMethod=0 EAP: EAP entering state IDENTITY CTRL-EVENT-EAP-STARTED EAP authentication started EAP: Status notification: started (param=) EAP: EAP-Request Identity data - hexdump_ascii(len=0): EAP: using anonymous identity - hexdump_ascii(len=32): 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 6bd4a86988324e56 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 b2dcdcf053161a02 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=37) TX EAP -> RADIUS - hexdump(len=37): 02 92 00 25 01 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 Encapsulating EAP message into a RADIUS packet Learned identity from EAP-Response-Identity - hexdump(len=32): 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=0 length=178 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=39 Value: 02920025013662643461383639383833323465353662326463646366303533313631613032 Attribute 80 (Message-Authenticator) length=18 Value: 8caac4df266da9b1bc455824aacdb639 Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 64 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=0 length=64 Attribute 79 (EAP-Message) length=8 Value: 019300060d20 Attribute 80 (Message-Authenticator) length=18 Value: 9e38ca5519cf2e93f8bf94884276a4fb Attribute 24 (State) length=18 Value: 714db82071deb5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=147 len=6) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=147 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state GET_METHOD CTRL-EVENT-EAP-PROPOSED-METHOD vendor=0 method=13 EAP: Status notification: accept proposed method (param=TLS) EAP: Initialize selected EAP method: vendor 0 method 13 (TLS) TLS: using phase1 config options OpenSSL: SSL_use_certificate_chain_file --> OK OpenSSL: tls_use_private_key_file (PEM) --> loaded SSL: Private key loaded successfully CTRL-EVENT-EAP-METHOD EAP vendor 0 method 13 (TLS) selected EAP: EAP entering state METHOD SSL: Received packet(len=6) - Flags 0x20 EAP-TLS: Start SSL: (where=0x10 ret=0x1) SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:before SSL initialization OpenSSL: TX ver=0x301 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 01 00 b3 OpenSSL: TX ver=0x303 content_type=22 (handshake/client hello) OpenSSL: Message - hexdump(len=179): 01 00 00 af 03 03 1d 1c e0 50 b1 5b 04 3d 3f dc 93 2d f1 b9 44 cd 12 e2 b6 28 83 95 42 bf f3 36 76 f0 f4 74 da 03 00 00 38 c0 2c c0 30 00 9f cc a9 cc a8 cc aa c0 2b c0 2f 00 9e c0 24 c0 28 00 6b c0 23 c0 27 00 67 c0 0a c0 14 00 39 c0 09 c0 13 00 33 00 9d 00 9c 00 3d 00 3c 00 35 00 2f 00 ff 01 00 00 4e 00 0b 00 04 03 00 01 02 00 0a 00 0c 00 0a 00 1d 00 17 00 1e 00 19 00 18 00 16 00 00 00 17 00 00 00 0d 00 2a 00 28 04 03 05 03 06 03 08 07 08 08 08 09 08 0a 08 0b 08 04 08 05 08 06 04 01 05 01 06 01 03 03 03 01 03 02 04 02 05 02 06 02 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write client hello SSL: (where=0x1002 ret=0xffffffff) SSL: SSL_connect:error in SSLv3/TLS write client hello SSL: SSL_connect - want more data SSL: 184 bytes pending from ssl_out SSL: Using TLS version TLSv1.2 SSL: 184 bytes left to be sent out (of total 184 bytes) EAP: method process -> ignore=FALSE methodState=MAY_CONT decision=FAIL eapRespData=0x564825f1a9e0 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=190) TX EAP -> RADIUS - hexdump(len=190): 02 93 00 be 0d 00 16 03 01 00 b3 01 00 00 af 03 03 1d 1c e0 50 b1 5b 04 3d 3f dc 93 2d f1 b9 44 cd 12 e2 b6 28 83 95 42 bf f3 36 76 f0 f4 74 da 03 00 00 38 c0 2c c0 30 00 9f cc a9 cc a8 cc aa c0 2b c0 2f 00 9e c0 24 c0 28 00 6b c0 23 c0 27 00 67 c0 0a c0 14 00 39 c0 09 c0 13 00 33 00 9d 00 9c 00 3d 00 3c 00 35 00 2f 00 ff 01 00 00 4e 00 0b 00 04 03 00 01 02 00 0a 00 0c 00 0a 00 1d 00 17 00 1e 00 19 00 18 00 16 00 00 00 17 00 00 00 0d 00 2a 00 28 04 03 05 03 06 03 08 07 08 08 08 09 08 0a 08 0b 08 04 08 05 08 06 04 01 05 01 06 01 03 03 03 01 03 02 04 02 05 02 06 02 Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=1 length=349 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=192 Value: 029300be0d0016030100b3010000af03031d1ce050b15b043d3fdc932df1b944cd12e2b628839542bff33676f0f474da03000038c02cc030009fcca9cca8ccaac02bc02f009ec024c028006bc023c0270067c00ac0140039c009c0130033009d009c003d003c0035002f00ff0100004e000b000403000102000a000c000a001d0017001e001900180016000000170000000d002a0028040305030603080708080809080a080b080408050806040105010601030303010302040205020602 Attribute 24 (State) length=18 Value: 714db82071deb5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: d94f785d7f2f4184a43bf965c22f2dbf Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 1068 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=1 length=1068 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: f676342ff9c6c2c29ade9e089da85b9f978910210146d6a0b2ae927bb24588f6dea43eeab7e508112911343886dee24216ca9b968ec075769a898987bbe78e47627e7ea922f5a125bddfa7b7ef17fb0301d663f99aa4b36643fd9135b4ec3891310004a31e7159d8264790d972415e567141d114caed9e8eb6ad679c06d1ff562ebf3b056cac3c7715de473f7f392ad1915c0cac8f5b9aa34654060b0ed0a104ebf16c2730b3a988e20e8cddbde363b0669491c747e959c7d03944601ea875804a5eb13d2e1f1dfb04de289dc92af1fdf4948bdd356594f9872a859ed99f9b931d9e1b2b9218c4784c50de19bc8e31bdb498e12812c2657b42d9d18d2e Attribute 79 (EAP-Message) length=247 Value: 38d4a635c836324dabccf41dc30203010001a38202b5308202b130819006082b06010505070101048183308180305706082b06010505073002864b687474703a2f2f706b692e6172656e647473656e2e646b2f646f776e6c6f61642f4172656e647473656e5f536572766572735f4973737573696e675f43415f32303231313031302e636572302506082b060105050730018619687474703a2f2f6f6373702e6172656e647473656e2e646b2f301f0603551d23041830168014368777962f6ebd89906cb41ddc039a0cbf697f84300c0603551d130101ff04023000305c0603551d1f045530533051a04fa04d864b687474703a2f Attribute 80 (Message-Authenticator) length=18 Value: d18130bbd83c149d704d24fcb4ae7238 Attribute 24 (State) length=18 Value: 714db82070d9b5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=148 len=1004) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=148 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state METHOD SSL: Received packet(len=1004) - Flags 0xc0 SSL: TLS Message Length: 2616 SSL: Need 1622 bytes more input data SSL: Building ACK (type=13 id=148 ver=0) EAP: method process -> ignore=FALSE methodState=MAY_CONT decision=FAIL eapRespData=0x564825f1b040 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=6) TX EAP -> RADIUS - hexdump(len=6): 02 94 00 06 0d 00 Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=2 length=165 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=8 Value: 029400060d00 Attribute 24 (State) length=18 Value: 714db82070d9b5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: f5df48a0b660bdc8a243fc488750cea4 Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 1068 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=2 length=1068 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=247 Value: 1228d5021b8a636974008920400a0000baac64913e6d7825e1d7c97257513afd04e8d35217f5865955b18244451b4128707ce36c4d25aad922d52e0665218e2323f556c06b989280bfb24a9d846ccc59b0d4d62e54279acc0b71eba3b06971204c53ff609c4888f28e959e2c2e03591376dfa146f30b7587a1814a79f716030301cd0c0001c90300174104fb251243eda40cd1bee1736af70c25d319738ad0c7a3a2983e2e333054daca56237fad27dc6914aab36ff19c76d4970642ab81b9db73f5c1fb83ceeb622fdc5008040180968a6fe5784d1cb8f00007e99740c45dfd6b3c9576e5eeba830c58ba6d5c5eb4c2d910af0373 Attribute 80 (Message-Authenticator) length=18 Value: 1e45a7f1314fbc3357d6689800a300f1 Attribute 24 (State) length=18 Value: 714db82073d8b5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=149 len=1004) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=149 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state METHOD SSL: Received packet(len=1004) - Flags 0xc0 SSL: TLS Message Length: 2616 SSL: Need 628 bytes more input data SSL: Building ACK (type=13 id=149 ver=0) EAP: method process -> ignore=FALSE methodState=MAY_CONT decision=FAIL eapRespData=0x564825f18900 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=6) TX EAP -> RADIUS - hexdump(len=6): 02 95 00 06 0d 00 Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=3 length=165 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=8 Value: 029500060d00 Attribute 24 (State) length=18 Value: 714db82073d8b5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: 3fddab1b30b37e9352de5897da26d054 Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 700 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=3 length=700 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=134 Value: 0c264172656e647473656e2044657669636573204973737573696e672043412032303231313031310051304f310b300906035504061302444b31123010060355040a0c094172656e647473656e312c302a06035504030c234172656e647473656e2055736572204973737573696e6720434120323032313130303816030300040e000000 Attribute 80 (Message-Authenticator) length=18 Value: 5222fd3400ce034adbdf43baaf516e67 Attribute 24 (State) length=18 Value: 714db82072dbb5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=150 len=638) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=150 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state METHOD SSL: Received packet(len=638) - Flags 0x80 SSL: TLS Message Length: 2616 OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 00 3d SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write client hello OpenSSL: RX ver=0x303 content_type=22 (handshake/server hello) OpenSSL: Message - hexdump(len=61): 02 00 00 39 03 03 71 03 63 2e 71 24 9b bc a3 66 c7 8b cb 84 1f 24 4c 24 8b 22 35 46 77 c1 5b cc 3f 5a 35 93 da 50 00 c0 30 00 00 11 ff 01 00 01 00 00 0b 00 04 03 00 01 02 00 17 00 00 OpenSSL: Server selected cipher suite 0xc030 OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 07 05 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read server hello OpenSSL: RX ver=0x303 content_type=22 (handshake/certificate) OpenSSL: Message - hexdump(len=1797): 0b 00 07 01 00 06 fe 00 06 fb 30 82 06 f7 30 82 05 5f a0 03 02 01 02 02 0a 4f ff 11 37 30 21 e4 b7 f7 d0 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 30 52 31 0b 30 09 06 03 55 04 06 13 02 44 4b 31 12 30 10 06 03 55 04 0a 0c 09 41 72 65 6e 64 74 73 65 6e 31 2f 30 2d 06 03 55 04 03 0c 26 41 72 65 6e 64 74 73 65 6e 20 53 65 72 76 65 72 73 20 49 73 73 75 73 69 6e 67 20 43 41 20 32 30 32 31 31 30 31 30 30 1e 17 0d 32 33 30 37 32 32 32 32 31 34 30 33 5a 17 0d 32 34 30 31 32 32 32 32 31 34 30 33 5a 30 6a 31 12 30 10 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 02 64 6b 31 19 30 17 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 09 61 72 65 6e 64 74 73 65 6e 31 12 30 10 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 02 63 61 31 25 30 23 06 03 55 04 03 0c 1c 61 75 74 68 30 32 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 30 82 01 a2 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 8f 00 30 82 01 8a 02 82 01 81 00 98 5f 65 04 e8 dc 3c 30 f7 46 06 7d 0d 63 70 bc 75 32 3f 57 93 0b 5b 2c c4 c2 60 2e a2 df de f8 dc a7 19 3d 30 87 5b 58 5b ee 26 48 d6 79 a0 ea cf 57 ba d1 92 c7 4b 34 57 d8 78 c4 82 72 e1 8e f2 b6 12 5f 45 e7 4a 7c 21 1d 2a c7 19 85 72 ba 24 40 8d 5b c9 cf c9 d3 29 47 5a ad c1 97 c9 67 59 cf 03 5d 27 0b 71 eb e5 2b 77 61 f3 77 48 41 3a d7 e2 ca d4 47 f6 76 34 2f f9 c6 c2 c2 9a de 9e 08 9d a8 5b 9f 97 89 10 21 01 46 d6 a0 b2 ae 92 7b b2 45 88 f6 de a4 3e ea b7 e5 08 11 29 11 34 38 86 de e2 42 16 ca 9b 96 8e c0 75 76 9a 89 89 87 bb e7 8e 47 62 7e 7e a9 22 f5 a1 25 bd df a7 b7 ef 17 fb 03 01 d6 63 f9 9a a4 b3 66 43 fd 91 35 b4 ec 38 91 31 00 04 a3 1e 71 59 d8 26 47 90 d9 72 41 5e 56 71 41 d1 14 ca ed 9e 8e b6 ad 67 9c 06 d1 ff 56 2e bf 3b 05 6c ac 3c 77 15 de 47 3f 7f 39 2a d1 91 5c 0c ac 8f 5b 9a a3 46 54 06 0b 0e d0 a1 04 eb f1 6c 27 30 b3 a9 88 e2 0e 8c dd bd e3 63 b0 66 94 91 c7 47 e9 59 c7 d0 39 44 60 1e a8 75 80 4a 5e b1 3d 2e 1f 1d fb 04 de 28 9d c9 2a f1 fd f4 94 8b dd 35 65 94 f9 87 2a 85 9e d9 9f 9b 93 1d 9e 1b 2b 92 18 c4 78 4c 50 de 19 bc 8e 31 bd b4 98 e1 28 12 c2 65 7b 42 d9 d1 8d 2e 38 d4 a6 35 c8 36 32 4d ab cc f4 1d c3 02 03 01 00 01 a3 82 02 b5 30 82 02 b1 30 81 90 06 08 2b 06 01 05 05 07 01 01 04 81 83 30 81 80 30 57 06 08 2b 06 01 05 05 07 30 02 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 53 65 72 76 65 72 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 30 2e 63 65 72 30 25 06 08 2b 06 01 05 05 07 30 01 86 19 68 74 74 70 3a 2f 2f 6f 63 73 70 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 30 1f 06 03 55 1d 23 04 18 30 16 80 14 36 87 77 96 2f 6e bd 89 90 6c b4 1d dc 03 9a 0c bf 69 7f 84 30 0c 06 03 55 1d 13 01 01 ff 04 02 30 00 30 5c 06 03 55 1d 1f 04 55 30 53 30 51 a0 4f a0 4d 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 53 65 72 76 65 72 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 30 2e 63 72 6c 30 13 06 03 55 1d 25 04 0c 30 0a 06 08 2b 06 01 05 05 07 03 01 30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 03 a8 30 81 aa 06 03 55 1d 20 04 81 a2 30 81 9f 30 81 9c 06 03 2a 03 04 30 81 94 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 36 06 08 2b 06 01 05 05 07 02 02 30 2a 1a 28 54 68 69 73 20 69 73 20 61 20 63 6f 6d 6d 65 6e 74 20 66 6f 72 20 70 6f 6c 69 63 79 20 6f 69 64 20 31 2e 32 2e 33 2e 34 30 81 9d 06 03 55 1d 11 04 81 95 30 81 92 82 1a 61 75 74 68 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 82 1c 61 75 74 68 30 32 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 82 1c 6c 64 61 70 30 32 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 82 1a 6c 64 61 70 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 82 1c 72 61 64 69 75 73 2e 69 6e 74 65 72 6e 61 6c 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 30 1d 06 03 55 1d 0e 04 16 04 14 d8 87 db 08 7d d5 47 ee ce 65 d4 73 7d f3 e2 cd cc 59 ee bd 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 03 82 01 81 00 33 78 2b 5a 0d fb 1e 3f 4b 93 ba f5 3c 29 31 71 8f 5a f0 4e 7f 24 be 9c 78 42 e0 fd 98 e1 56 07 5f 67 6a cb 63 cf ce d9 b2 35 7e ca 7f 6e fb b0 38 7f 68 07 8c 55 0e 3f 40 87 98 4a a4 57 af f8 1f 5e 61 a9 32 a8 b0 7f 64 30 b8 bf cb 40 31 92 8c 8a 99 83 1a 35 29 82 ca b7 2d c9 f2 5f 40 e5 08 f6 96 2c b9 b2 19 70 c2 ac 6c 92 9d 6f c2 68 1e 36 43 7a 63 06 fa 24 34 d9 32 22 dd 1b 88 fd 97 3c f8 6f 76 ec 1d a5 f5 54 25 de 26 da 65 73 c1 a3 da 4b a9 1c 0e b6 59 6c 21 0c 95 38 7b 2a b8 c7 43 6f e8 e9 a9 d0 e6 db 44 f2 3d aa 5a 50 f9 26 1f 0c 74 da 7e 93 6c 63 88 d8 8c 61 c6 4c 15 b8 ab 9a 82 0a 99 11 38 bb 2d 4b 21 dd 02 03 cc 4d 4d de 5d 8d db 29 fe 6d 10 65 a7 c9 e9 9c 40 c3 35 96 e2 32 83 c8 0a 84 4d 79 86 e4 91 e2 53 ac 95 2f b6 5c e5 4e 48 89 cb 58 d4 69 53 89 4b 39 d7 12 28 d5 02 1b 8a 63 69 74 00 89 20 40 0a 00 00 ba ac 64 91 3e 6d 78 25 e1 d7 c9 72 57 51 3a fd 04 e8 d3 52 17 f5 86 59 55 b1 82 44 45 1b 41 28 70 7c e3 6c 4d 25 aa d9 22 d5 2e 06 65 21 8e 23 23 f5 56 c0 6b 98 92 80 bf b2 4a 9d 84 6c cc 59 b0 d4 d6 2e 54 27 9a cc 0b 71 eb a3 b0 69 71 20 4c 53 ff 60 9c 48 88 f2 8e 95 9e 2c 2e 03 59 13 76 df a1 46 f3 0b 75 87 a1 81 4a 79 f7 OpenSSL: Peer certificate - depth 0 Certificate: Data: Version: 3 (0x2) Serial Number: 4f:ff:11:37:30:21:e4:b7:f7:d0 Signature Algorithm: sha256WithRSAEncryption Issuer: C=DK, O=Arendtsen, CN=Arendtsen Servers Issusing CA 20211010 Validity Not Before: Jul 22 22:14:03 2023 GMT Not After : Jan 22 22:14:03 2024 GMT Subject: DC=dk, DC=arendtsen, DC=ca, CN=auth02.internal.arendtsen.dk Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (3072 bit) Modulus: 00:98:5f:65:04:e8:dc:3c:30:f7:46:06:7d:0d:63: 70:bc:75:32:3f:57:93:0b:5b:2c:c4:c2:60:2e:a2: df:de:f8:dc:a7:19:3d:30:87:5b:58:5b:ee:26:48: d6:79:a0:ea:cf:57:ba:d1:92:c7:4b:34:57:d8:78: c4:82:72:e1:8e:f2:b6:12:5f:45:e7:4a:7c:21:1d: 2a:c7:19:85:72:ba:24:40:8d:5b:c9:cf:c9:d3:29: 47:5a:ad:c1:97:c9:67:59:cf:03:5d:27:0b:71:eb: e5:2b:77:61:f3:77:48:41:3a:d7:e2:ca:d4:47:f6: 76:34:2f:f9:c6:c2:c2:9a:de:9e:08:9d:a8:5b:9f: 97:89:10:21:01:46:d6:a0:b2:ae:92:7b:b2:45:88: f6:de:a4:3e:ea:b7:e5:08:11:29:11:34:38:86:de: e2:42:16:ca:9b:96:8e:c0:75:76:9a:89:89:87:bb: e7:8e:47:62:7e:7e:a9:22:f5:a1:25:bd:df:a7:b7: ef:17:fb:03:01:d6:63:f9:9a:a4:b3:66:43:fd:91: 35:b4:ec:38:91:31:00:04:a3:1e:71:59:d8:26:47: 90:d9:72:41:5e:56:71:41:d1:14:ca:ed:9e:8e:b6: ad:67:9c:06:d1:ff:56:2e:bf:3b:05:6c:ac:3c:77: 15:de:47:3f:7f:39:2a:d1:91:5c:0c:ac:8f:5b:9a: a3:46:54:06:0b:0e:d0:a1:04:eb:f1:6c:27:30:b3: a9:88:e2:0e:8c:dd:bd:e3:63:b0:66:94:91:c7:47: e9:59:c7:d0:39:44:60:1e:a8:75:80:4a:5e:b1:3d: 2e:1f:1d:fb:04:de:28:9d:c9:2a:f1:fd:f4:94:8b: dd:35:65:94:f9:87:2a:85:9e:d9:9f:9b:93:1d:9e: 1b:2b:92:18:c4:78:4c:50:de:19:bc:8e:31:bd:b4: 98:e1:28:12:c2:65:7b:42:d9:d1:8d:2e:38:d4:a6: 35:c8:36:32:4d:ab:cc:f4:1d:c3 Exponent: 65537 (0x10001) X509v3 extensions: Authority Information Access: CA Issuers - URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.cer OCSP - URI:http://ocsp.arendtsen.dk/ X509v3 Authority Key Identifier: 36:87:77:96:2F:6E:BD:89:90:6C:B4:1D:DC:03:9A:0C:BF:69:7F:84 X509v3 Basic Constraints: critical CA:FALSE X509v3 CRL Distribution Points: Full Name: URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.crl X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: critical Digital Signature, Key Encipherment, Key Agreement X509v3 Certificate Policies: Policy: 1.2.3.4 CPS: http://pki.arendtsen.dk/cps.html CPS: http://pki.arendtsen.dk/cps.html User Notice: Explicit Text: This is a comment for policy oid 1.2.3.4 X509v3 Subject Alternative Name: DNS:auth.internal.arendtsen.dk, DNS:auth02.internal.arendtsen.dk, DNS:ldap02.internal.arendtsen.dk, DNS:ldap.internal.arendtsen.dk, DNS:radius.internal.arendtsen.dk X509v3 Subject Key Identifier: D8:87:DB:08:7D:D5:47:EE:CE:65:D4:73:7D:F3:E2:CD:CC:59:EE:BD Signature Algorithm: sha256WithRSAEncryption Signature Value: 33:78:2b:5a:0d:fb:1e:3f:4b:93:ba:f5:3c:29:31:71:8f:5a: f0:4e:7f:24:be:9c:78:42:e0:fd:98:e1:56:07:5f:67:6a:cb: 63:cf:ce:d9:b2:35:7e:ca:7f:6e:fb:b0:38:7f:68:07:8c:55: 0e:3f:40:87:98:4a:a4:57:af:f8:1f:5e:61:a9:32:a8:b0:7f: 64:30:b8:bf:cb:40:31:92:8c:8a:99:83:1a:35:29:82:ca:b7: 2d:c9:f2:5f:40:e5:08:f6:96:2c:b9:b2:19:70:c2:ac:6c:92: 9d:6f:c2:68:1e:36:43:7a:63:06:fa:24:34:d9:32:22:dd:1b: 88:fd:97:3c:f8:6f:76:ec:1d:a5:f5:54:25:de:26:da:65:73: c1:a3:da:4b:a9:1c:0e:b6:59:6c:21:0c:95:38:7b:2a:b8:c7: 43:6f:e8:e9:a9:d0:e6:db:44:f2:3d:aa:5a:50:f9:26:1f:0c: 74:da:7e:93:6c:63:88:d8:8c:61:c6:4c:15:b8:ab:9a:82:0a: 99:11:38:bb:2d:4b:21:dd:02:03:cc:4d:4d:de:5d:8d:db:29: fe:6d:10:65:a7:c9:e9:9c:40:c3:35:96:e2:32:83:c8:0a:84: 4d:79:86:e4:91:e2:53:ac:95:2f:b6:5c:e5:4e:48:89:cb:58: d4:69:53:89:4b:39:d7:12:28:d5:02:1b:8a:63:69:74:00:89: 20:40:0a:00:00:ba:ac:64:91:3e:6d:78:25:e1:d7:c9:72:57: 51:3a:fd:04:e8:d3:52:17:f5:86:59:55:b1:82:44:45:1b:41: 28:70:7c:e3:6c:4d:25:aa:d9:22:d5:2e:06:65:21:8e:23:23: f5:56:c0:6b:98:92:80:bf:b2:4a:9d:84:6c:cc:59:b0:d4:d6: 2e:54:27:9a:cc:0b:71:eb:a3:b0:69:71:20:4c:53:ff:60:9c: 48:88:f2:8e:95:9e:2c:2e:03:59:13:76:df:a1:46:f3:0b:75: 87:a1:81:4a:79:f7 OpenSSL: Certificate Policy 1.2.3.4 CTRL-EVENT-EAP-PEER-CERT depth=0 subject='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' hash=7ca1dc2f10dc02a0fec1865370aaf9156491e868e4e6385de3d529634ad30a3a CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:radius.internal.arendtsen.dk TLS: tls_verify_cb - preverify_ok=1 err=20 (unable to get local issuer certificate) ca_cert_verify=0 depth=0 buf='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' EAP: Status notification: remote certificate verification (param=success) OpenSSL: Peer certificate - depth 0 Certificate: Data: Version: 3 (0x2) Serial Number: 4f:ff:11:37:30:21:e4:b7:f7:d0 Signature Algorithm: sha256WithRSAEncryption Issuer: C=DK, O=Arendtsen, CN=Arendtsen Servers Issusing CA 20211010 Validity Not Before: Jul 22 22:14:03 2023 GMT Not After : Jan 22 22:14:03 2024 GMT Subject: DC=dk, DC=arendtsen, DC=ca, CN=auth02.internal.arendtsen.dk Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (3072 bit) Modulus: 00:98:5f:65:04:e8:dc:3c:30:f7:46:06:7d:0d:63: 70:bc:75:32:3f:57:93:0b:5b:2c:c4:c2:60:2e:a2: df:de:f8:dc:a7:19:3d:30:87:5b:58:5b:ee:26:48: d6:79:a0:ea:cf:57:ba:d1:92:c7:4b:34:57:d8:78: c4:82:72:e1:8e:f2:b6:12:5f:45:e7:4a:7c:21:1d: 2a:c7:19:85:72:ba:24:40:8d:5b:c9:cf:c9:d3:29: 47:5a:ad:c1:97:c9:67:59:cf:03:5d:27:0b:71:eb: e5:2b:77:61:f3:77:48:41:3a:d7:e2:ca:d4:47:f6: 76:34:2f:f9:c6:c2:c2:9a:de:9e:08:9d:a8:5b:9f: 97:89:10:21:01:46:d6:a0:b2:ae:92:7b:b2:45:88: f6:de:a4:3e:ea:b7:e5:08:11:29:11:34:38:86:de: e2:42:16:ca:9b:96:8e:c0:75:76:9a:89:89:87:bb: e7:8e:47:62:7e:7e:a9:22:f5:a1:25:bd:df:a7:b7: ef:17:fb:03:01:d6:63:f9:9a:a4:b3:66:43:fd:91: 35:b4:ec:38:91:31:00:04:a3:1e:71:59:d8:26:47: 90:d9:72:41:5e:56:71:41:d1:14:ca:ed:9e:8e:b6: ad:67:9c:06:d1:ff:56:2e:bf:3b:05:6c:ac:3c:77: 15:de:47:3f:7f:39:2a:d1:91:5c:0c:ac:8f:5b:9a: a3:46:54:06:0b:0e:d0:a1:04:eb:f1:6c:27:30:b3: a9:88:e2:0e:8c:dd:bd:e3:63:b0:66:94:91:c7:47: e9:59:c7:d0:39:44:60:1e:a8:75:80:4a:5e:b1:3d: 2e:1f:1d:fb:04:de:28:9d:c9:2a:f1:fd:f4:94:8b: dd:35:65:94:f9:87:2a:85:9e:d9:9f:9b:93:1d:9e: 1b:2b:92:18:c4:78:4c:50:de:19:bc:8e:31:bd:b4: 98:e1:28:12:c2:65:7b:42:d9:d1:8d:2e:38:d4:a6: 35:c8:36:32:4d:ab:cc:f4:1d:c3 Exponent: 65537 (0x10001) X509v3 extensions: Authority Information Access: CA Issuers - URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.cer OCSP - URI:http://ocsp.arendtsen.dk/ X509v3 Authority Key Identifier: 36:87:77:96:2F:6E:BD:89:90:6C:B4:1D:DC:03:9A:0C:BF:69:7F:84 X509v3 Basic Constraints: critical CA:FALSE X509v3 CRL Distribution Points: Full Name: URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.crl X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: critical Digital Signature, Key Encipherment, Key Agreement X509v3 Certificate Policies: Policy: 1.2.3.4 CPS: http://pki.arendtsen.dk/cps.html CPS: http://pki.arendtsen.dk/cps.html User Notice: Explicit Text: This is a comment for policy oid 1.2.3.4 X509v3 Subject Alternative Name: DNS:auth.internal.arendtsen.dk, DNS:auth02.internal.arendtsen.dk, DNS:ldap02.internal.arendtsen.dk, DNS:ldap.internal.arendtsen.dk, DNS:radius.internal.arendtsen.dk X509v3 Subject Key Identifier: D8:87:DB:08:7D:D5:47:EE:CE:65:D4:73:7D:F3:E2:CD:CC:59:EE:BD Signature Algorithm: sha256WithRSAEncryption Signature Value: 33:78:2b:5a:0d:fb:1e:3f:4b:93:ba:f5:3c:29:31:71:8f:5a: f0:4e:7f:24:be:9c:78:42:e0:fd:98:e1:56:07:5f:67:6a:cb: 63:cf:ce:d9:b2:35:7e:ca:7f:6e:fb:b0:38:7f:68:07:8c:55: 0e:3f:40:87:98:4a:a4:57:af:f8:1f:5e:61:a9:32:a8:b0:7f: 64:30:b8:bf:cb:40:31:92:8c:8a:99:83:1a:35:29:82:ca:b7: 2d:c9:f2:5f:40:e5:08:f6:96:2c:b9:b2:19:70:c2:ac:6c:92: 9d:6f:c2:68:1e:36:43:7a:63:06:fa:24:34:d9:32:22:dd:1b: 88:fd:97:3c:f8:6f:76:ec:1d:a5:f5:54:25:de:26:da:65:73: c1:a3:da:4b:a9:1c:0e:b6:59:6c:21:0c:95:38:7b:2a:b8:c7: 43:6f:e8:e9:a9:d0:e6:db:44:f2:3d:aa:5a:50:f9:26:1f:0c: 74:da:7e:93:6c:63:88:d8:8c:61:c6:4c:15:b8:ab:9a:82:0a: 99:11:38:bb:2d:4b:21:dd:02:03:cc:4d:4d:de:5d:8d:db:29: fe:6d:10:65:a7:c9:e9:9c:40:c3:35:96:e2:32:83:c8:0a:84: 4d:79:86:e4:91:e2:53:ac:95:2f:b6:5c:e5:4e:48:89:cb:58: d4:69:53:89:4b:39:d7:12:28:d5:02:1b:8a:63:69:74:00:89: 20:40:0a:00:00:ba:ac:64:91:3e:6d:78:25:e1:d7:c9:72:57: 51:3a:fd:04:e8:d3:52:17:f5:86:59:55:b1:82:44:45:1b:41: 28:70:7c:e3:6c:4d:25:aa:d9:22:d5:2e:06:65:21:8e:23:23: f5:56:c0:6b:98:92:80:bf:b2:4a:9d:84:6c:cc:59:b0:d4:d6: 2e:54:27:9a:cc:0b:71:eb:a3:b0:69:71:20:4c:53:ff:60:9c: 48:88:f2:8e:95:9e:2c:2e:03:59:13:76:df:a1:46:f3:0b:75: 87:a1:81:4a:79:f7 OpenSSL: Certificate Policy 1.2.3.4 CTRL-EVENT-EAP-PEER-CERT depth=0 subject='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' hash=7ca1dc2f10dc02a0fec1865370aaf9156491e868e4e6385de3d529634ad30a3a CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:radius.internal.arendtsen.dk TLS: tls_verify_cb - preverify_ok=1 err=21 (unable to verify the first certificate) ca_cert_verify=0 depth=0 buf='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' EAP: Status notification: remote certificate verification (param=success) OpenSSL: Peer certificate - depth 0 Certificate: Data: Version: 3 (0x2) Serial Number: 4f:ff:11:37:30:21:e4:b7:f7:d0 Signature Algorithm: sha256WithRSAEncryption Issuer: C=DK, O=Arendtsen, CN=Arendtsen Servers Issusing CA 20211010 Validity Not Before: Jul 22 22:14:03 2023 GMT Not After : Jan 22 22:14:03 2024 GMT Subject: DC=dk, DC=arendtsen, DC=ca, CN=auth02.internal.arendtsen.dk Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (3072 bit) Modulus: 00:98:5f:65:04:e8:dc:3c:30:f7:46:06:7d:0d:63: 70:bc:75:32:3f:57:93:0b:5b:2c:c4:c2:60:2e:a2: df:de:f8:dc:a7:19:3d:30:87:5b:58:5b:ee:26:48: d6:79:a0:ea:cf:57:ba:d1:92:c7:4b:34:57:d8:78: c4:82:72:e1:8e:f2:b6:12:5f:45:e7:4a:7c:21:1d: 2a:c7:19:85:72:ba:24:40:8d:5b:c9:cf:c9:d3:29: 47:5a:ad:c1:97:c9:67:59:cf:03:5d:27:0b:71:eb: e5:2b:77:61:f3:77:48:41:3a:d7:e2:ca:d4:47:f6: 76:34:2f:f9:c6:c2:c2:9a:de:9e:08:9d:a8:5b:9f: 97:89:10:21:01:46:d6:a0:b2:ae:92:7b:b2:45:88: f6:de:a4:3e:ea:b7:e5:08:11:29:11:34:38:86:de: e2:42:16:ca:9b:96:8e:c0:75:76:9a:89:89:87:bb: e7:8e:47:62:7e:7e:a9:22:f5:a1:25:bd:df:a7:b7: ef:17:fb:03:01:d6:63:f9:9a:a4:b3:66:43:fd:91: 35:b4:ec:38:91:31:00:04:a3:1e:71:59:d8:26:47: 90:d9:72:41:5e:56:71:41:d1:14:ca:ed:9e:8e:b6: ad:67:9c:06:d1:ff:56:2e:bf:3b:05:6c:ac:3c:77: 15:de:47:3f:7f:39:2a:d1:91:5c:0c:ac:8f:5b:9a: a3:46:54:06:0b:0e:d0:a1:04:eb:f1:6c:27:30:b3: a9:88:e2:0e:8c:dd:bd:e3:63:b0:66:94:91:c7:47: e9:59:c7:d0:39:44:60:1e:a8:75:80:4a:5e:b1:3d: 2e:1f:1d:fb:04:de:28:9d:c9:2a:f1:fd:f4:94:8b: dd:35:65:94:f9:87:2a:85:9e:d9:9f:9b:93:1d:9e: 1b:2b:92:18:c4:78:4c:50:de:19:bc:8e:31:bd:b4: 98:e1:28:12:c2:65:7b:42:d9:d1:8d:2e:38:d4:a6: 35:c8:36:32:4d:ab:cc:f4:1d:c3 Exponent: 65537 (0x10001) X509v3 extensions: Authority Information Access: CA Issuers - URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.cer OCSP - URI:http://ocsp.arendtsen.dk/ X509v3 Authority Key Identifier: 36:87:77:96:2F:6E:BD:89:90:6C:B4:1D:DC:03:9A:0C:BF:69:7F:84 X509v3 Basic Constraints: critical CA:FALSE X509v3 CRL Distribution Points: Full Name: URI:http://pki.arendtsen.dk/download/Arendtsen_Servers_Issusing_CA_20211010.crl X509v3 Extended Key Usage: TLS Web Server Authentication X509v3 Key Usage: critical Digital Signature, Key Encipherment, Key Agreement X509v3 Certificate Policies: Policy: 1.2.3.4 CPS: http://pki.arendtsen.dk/cps.html CPS: http://pki.arendtsen.dk/cps.html User Notice: Explicit Text: This is a comment for policy oid 1.2.3.4 X509v3 Subject Alternative Name: DNS:auth.internal.arendtsen.dk, DNS:auth02.internal.arendtsen.dk, DNS:ldap02.internal.arendtsen.dk, DNS:ldap.internal.arendtsen.dk, DNS:radius.internal.arendtsen.dk X509v3 Subject Key Identifier: D8:87:DB:08:7D:D5:47:EE:CE:65:D4:73:7D:F3:E2:CD:CC:59:EE:BD Signature Algorithm: sha256WithRSAEncryption Signature Value: 33:78:2b:5a:0d:fb:1e:3f:4b:93:ba:f5:3c:29:31:71:8f:5a: f0:4e:7f:24:be:9c:78:42:e0:fd:98:e1:56:07:5f:67:6a:cb: 63:cf:ce:d9:b2:35:7e:ca:7f:6e:fb:b0:38:7f:68:07:8c:55: 0e:3f:40:87:98:4a:a4:57:af:f8:1f:5e:61:a9:32:a8:b0:7f: 64:30:b8:bf:cb:40:31:92:8c:8a:99:83:1a:35:29:82:ca:b7: 2d:c9:f2:5f:40:e5:08:f6:96:2c:b9:b2:19:70:c2:ac:6c:92: 9d:6f:c2:68:1e:36:43:7a:63:06:fa:24:34:d9:32:22:dd:1b: 88:fd:97:3c:f8:6f:76:ec:1d:a5:f5:54:25:de:26:da:65:73: c1:a3:da:4b:a9:1c:0e:b6:59:6c:21:0c:95:38:7b:2a:b8:c7: 43:6f:e8:e9:a9:d0:e6:db:44:f2:3d:aa:5a:50:f9:26:1f:0c: 74:da:7e:93:6c:63:88:d8:8c:61:c6:4c:15:b8:ab:9a:82:0a: 99:11:38:bb:2d:4b:21:dd:02:03:cc:4d:4d:de:5d:8d:db:29: fe:6d:10:65:a7:c9:e9:9c:40:c3:35:96:e2:32:83:c8:0a:84: 4d:79:86:e4:91:e2:53:ac:95:2f:b6:5c:e5:4e:48:89:cb:58: d4:69:53:89:4b:39:d7:12:28:d5:02:1b:8a:63:69:74:00:89: 20:40:0a:00:00:ba:ac:64:91:3e:6d:78:25:e1:d7:c9:72:57: 51:3a:fd:04:e8:d3:52:17:f5:86:59:55:b1:82:44:45:1b:41: 28:70:7c:e3:6c:4d:25:aa:d9:22:d5:2e:06:65:21:8e:23:23: f5:56:c0:6b:98:92:80:bf:b2:4a:9d:84:6c:cc:59:b0:d4:d6: 2e:54:27:9a:cc:0b:71:eb:a3:b0:69:71:20:4c:53:ff:60:9c: 48:88:f2:8e:95:9e:2c:2e:03:59:13:76:df:a1:46:f3:0b:75: 87:a1:81:4a:79:f7 OpenSSL: Certificate Policy 1.2.3.4 CTRL-EVENT-EAP-PEER-CERT depth=0 subject='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' hash=7ca1dc2f10dc02a0fec1865370aaf9156491e868e4e6385de3d529634ad30a3a CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:auth02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap02.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:ldap.internal.arendtsen.dk CTRL-EVENT-EAP-PEER-ALT depth=0 DNS:radius.internal.arendtsen.dk TLS: tls_verify_cb - preverify_ok=1 err=21 (unable to verify the first certificate) ca_cert_verify=0 depth=0 buf='/DC=dk/DC=arendtsen/DC=ca/CN=auth02.internal.arendtsen.dk' EAP: Status notification: remote certificate verification (param=success) OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 01 cd SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read server certificate OpenSSL: RX ver=0x303 content_type=22 (handshake/server key exchange) OpenSSL: Message - hexdump(len=461): 0c 00 01 c9 03 00 17 41 04 fb 25 12 43 ed a4 0c d1 be e1 73 6a f7 0c 25 d3 19 73 8a d0 c7 a3 a2 98 3e 2e 33 30 54 da ca 56 23 7f ad 27 dc 69 14 aa b3 6f f1 9c 76 d4 97 06 42 ab 81 b9 db 73 f5 c1 fb 83 ce eb 62 2f dc 50 08 04 01 80 96 8a 6f e5 78 4d 1c b8 f0 00 07 e9 97 40 c4 5d fd 6b 3c 95 76 e5 ee ba 83 0c 58 ba 6d 5c 5e b4 c2 d9 10 af 03 73 fb a2 13 fd 6a 6c c3 c1 13 3c df c7 46 d1 e7 6f 22 77 55 c9 f9 b7 84 63 49 4a 4f ea a8 6a 50 2c 59 a7 09 24 3a ec 8a 97 6c a0 cc cc 27 22 a3 8e 86 ed 2a 0f 98 af af 10 af 10 b7 ae d8 0b f6 0b 5c 07 ee 90 ad 49 28 29 2a 48 27 01 54 7f c7 50 2c 5b 27 09 c6 10 ff 04 ee 34 bf c5 90 8f 9b c7 4f 86 ed 61 2e ff d7 1a 8c 9b 94 7c 85 ec 67 2b 05 93 a2 ea 31 7f ec ec a7 37 31 d7 39 af cd 98 81 6c 37 a6 22 24 c6 97 85 8c 06 90 03 5c 17 ef f5 ab 2b 30 21 7c 37 78 72 a4 9a 70 84 2b b0 3a eb 57 b1 53 22 55 5d ff 22 7b cf 71 3f e6 fa 33 70 3e 02 d7 2a b0 7a c2 02 d2 79 49 4c 8a 90 8b e8 99 c8 66 77 3a 36 fe 54 d8 9f 90 2a 06 cd 01 57 a7 3d 30 0d 09 7d 00 f7 8b 6b b1 84 cf b0 57 69 cf 5a df 01 1c 38 2f b6 8b 0a 28 c7 00 29 9b cf 18 db f9 b1 17 36 ba 60 5b de f7 b9 7e d0 92 4f d2 ad 7f fd df bd e6 7c 5e fe a3 74 79 86 ab 5c 5b 5a 57 27 bb 3d 07 bd e7 ca c9 e6 52 87 26 00 90 df fd fb e2 df e2 75 15 81 75 19 2a f4 b7 b5 86 42 03 e1 ec 9d d2 ef 63 88 bb 01 8f 4c 7a 8b 8d ec 12 f6 21 96 55 66 02 2c 5b 34 33 aa a8 06 39 f2 b3 90 19 e5 5d 00 88 OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 01 0c SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read server key exchange OpenSSL: RX ver=0x303 content_type=22 (handshake/certificate request) OpenSSL: Message - hexdump(len=268): 0d 00 01 08 03 01 02 40 00 2e 04 03 05 03 06 03 08 07 08 08 08 09 08 0a 08 0b 08 04 08 05 08 06 04 01 05 01 06 01 03 03 02 03 03 01 02 01 03 02 02 02 04 02 05 02 06 02 00 d2 00 27 30 25 31 23 30 21 06 03 55 04 03 0c 1a 41 72 65 6e 64 74 73 65 6e 20 52 6f 6f 74 20 43 41 20 32 30 32 31 30 38 32 33 00 54 30 52 31 0b 30 09 06 03 55 04 06 13 02 44 4b 31 12 30 10 06 03 55 04 0a 0c 09 41 72 65 6e 64 74 73 65 6e 31 2f 30 2d 06 03 55 04 03 0c 26 41 72 65 6e 64 74 73 65 6e 20 44 65 76 69 63 65 73 20 49 73 73 75 73 69 6e 67 20 43 41 20 32 30 32 31 31 30 31 31 00 51 30 4f 31 0b 30 09 06 03 55 04 06 13 02 44 4b 31 12 30 10 06 03 55 04 0a 0c 09 41 72 65 6e 64 74 73 65 6e 31 2c 30 2a 06 03 55 04 03 0c 23 41 72 65 6e 64 74 73 65 6e 20 55 73 65 72 20 49 73 73 75 73 69 6e 67 20 43 41 20 32 30 32 31 31 30 30 38 OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 00 04 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read server certificate request OpenSSL: RX ver=0x303 content_type=22 (handshake/server hello done) OpenSSL: Message - hexdump(len=4): 0e 00 00 00 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read server done OpenSSL: TX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 06 81 OpenSSL: TX ver=0x303 content_type=22 (handshake/certificate) OpenSSL: Message - hexdump(len=1665): 0b 00 06 7d 00 06 7a 00 06 77 30 82 06 73 30 82 04 db a0 03 02 01 02 02 0a 72 ff 95 dc f4 0c d6 88 3c 85 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 30 52 31 0b 30 09 06 03 55 04 06 13 02 44 4b 31 12 30 10 06 03 55 04 0a 0c 09 41 72 65 6e 64 74 73 65 6e 31 2f 30 2d 06 03 55 04 03 0c 26 41 72 65 6e 64 74 73 65 6e 20 44 65 76 69 63 65 73 20 49 73 73 75 73 69 6e 67 20 43 41 20 32 30 32 31 31 30 31 31 30 1e 17 0d 32 33 30 38 31 36 32 31 31 39 35 30 5a 17 0d 32 34 30 38 31 36 32 31 31 39 35 30 5a 30 81 85 31 12 30 10 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 02 64 6b 31 19 30 17 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 09 61 72 65 6e 64 74 73 65 6e 31 17 30 15 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 07 64 65 76 69 63 65 73 31 10 30 0e 06 03 55 04 0b 0c 07 64 65 76 69 63 65 73 31 29 30 27 06 03 55 04 03 0c 20 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 30 82 01 a2 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 8f 00 30 82 01 8a 02 82 01 81 00 9e 1b 1c 7a 2c 83 bb 36 17 94 d3 8e b3 09 c0 77 f5 25 6f 55 aa 56 1a 13 45 85 85 03 88 81 50 44 fd 48 32 3c f2 7a 10 00 98 d4 dd d5 c8 02 40 8b 81 ab a5 31 90 51 02 56 d8 fe a4 c8 36 51 2f 84 1b af 6b bd cb b6 7c be 59 18 9b 44 93 ab 5a 1f 8b 3d c6 d3 68 96 87 0d 18 f3 a2 c2 06 00 8f ba 48 5b 2e 57 3d 4c 8b fb fb d7 a6 e9 38 dc 3e 2f 02 77 88 f4 84 11 52 0e 19 56 4c 7a 48 24 91 2c a1 8a c2 cb eb bd 92 df fe 6f d8 2d fc 5a 7a 81 fd 6c 9e 06 70 db 36 50 40 5c 5f f8 89 d3 e2 b1 3a 5a bf f6 b9 78 78 9c 6f 62 64 97 e0 69 1f 18 07 3a df 54 e0 29 28 ab 5e 2b ec d6 5c 9b b4 49 b3 83 9e d2 cc 08 df 96 14 9c 59 ca f6 e3 c0 29 61 01 a8 6f 3d 0c d7 7c 6a bc 66 33 21 a8 b9 96 12 03 3a 47 07 d7 2b 82 6f b7 cc b4 7d 56 95 ee e0 2a fb fe dc c5 15 42 4a c0 c5 63 90 88 4a 72 66 8b 81 6e 0d 54 26 c7 7d ea fa bf 0d 38 c2 12 39 ec 39 4c 79 d7 3c f2 fd 2f 10 11 81 fc 0b e6 56 89 52 46 53 ab 62 6c 87 5b 53 62 cc 75 50 ef 96 a4 88 9c e6 d9 c6 44 86 cf a0 0e a6 a1 ba 85 d8 84 69 35 8c a4 92 2a 3a 8a 3a 63 3d 9d 64 36 24 ad 7d 16 e9 d6 f6 66 1d fa 2b 34 f4 6b 1d e0 c6 d3 7c 26 2f c1 4c 07 e5 be 94 db 53 9f 33 49 ae 5e 95 68 9f e0 57 7a f4 18 d8 13 d4 ca d0 09 02 03 01 00 01 a3 82 02 15 30 82 02 11 30 81 90 06 08 2b 06 01 05 05 07 01 01 04 81 83 30 81 80 30 57 06 08 2b 06 01 05 05 07 30 02 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 44 65 76 69 63 65 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 31 2e 63 65 72 30 25 06 08 2b 06 01 05 05 07 30 01 86 19 68 74 74 70 3a 2f 2f 6f 63 73 70 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 30 1f 06 03 55 1d 23 04 18 30 16 80 14 10 1c a7 8c d7 17 69 61 c6 0b f3 8f b2 d4 7e ec 0d 11 82 27 30 0c 06 03 55 1d 13 01 01 ff 04 02 30 00 30 5c 06 03 55 1d 1f 04 55 30 53 30 51 a0 4f a0 4d 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 44 65 76 69 63 65 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 31 2e 63 72 6c 30 13 06 03 55 1d 25 04 0c 30 0a 06 08 2b 06 01 05 05 07 03 02 30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 07 80 30 81 aa 06 03 55 1d 20 04 81 a2 30 81 9f 30 81 9c 06 03 2a 03 04 30 81 94 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 36 06 08 2b 06 01 05 05 07 02 02 30 2a 1a 28 54 68 69 73 20 69 73 20 61 20 63 6f 6d 6d 65 6e 74 20 66 6f 72 20 70 6f 6c 69 63 79 20 6f 69 64 20 31 2e 32 2e 33 2e 34 30 1d 06 03 55 1d 0e 04 16 04 14 ae 82 62 6f ea a4 ff be d0 36 fe ad c8 6c 4c ae 4a d1 e6 ce 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 03 82 01 81 00 9f 51 f4 e9 bc c4 90 73 f4 a2 48 67 42 5a 42 19 69 c5 dd 1d ec eb 04 b6 c1 1f 41 7b fe a3 95 81 2a a5 d3 6e 59 31 29 25 02 79 35 72 10 96 c0 02 b8 ee 2f a4 52 27 3c 75 33 6f 78 c2 56 da 5a 25 f9 e6 8c 3c 3b d7 ca 04 fc 08 6d a9 d5 22 58 9d 29 a0 30 b3 a8 6a 88 83 23 cd b2 6f 6b 26 9d 6d 69 d6 89 b8 c4 64 e7 f0 1c de b0 8a a0 51 71 27 3e a1 52 1a 30 18 be c7 59 74 a6 ae 20 db 06 b5 32 b8 6f 4e 44 2a 04 52 f8 e8 db 48 c4 5c 9b e8 69 5b cf b4 2e fd e7 71 6b b2 1f 5a 51 bd 15 e7 16 92 15 ba c1 90 d8 61 a3 f1 2d 83 7e 67 80 15 33 8c dc af 2e a5 b8 09 56 e3 28 2a 76 5a 2c 61 42 d3 16 8a 02 55 cd 99 e9 10 c7 91 15 3b 09 4f 13 25 2c 4f 67 17 91 4e a1 df 86 35 b4 df f0 34 a7 e1 a3 ca 04 4c b6 d9 8b 0a 7a d1 16 dd 9d 9f 15 ee 4f 45 e5 c0 bc 99 9d 8a 99 26 23 11 84 49 f2 95 11 da 7f ee 4f 57 8c 07 0c 32 19 8f 57 92 de 48 09 cd 4a d2 81 b3 ec 50 3f 5d 12 fc 51 7b 7a d1 a6 c2 30 b9 3c 4e 98 1c 7a 5e 24 a5 8b 74 cc dc 0d 57 fc 9e e8 53 5d 61 35 2a 9e ef b7 ac 93 e5 43 42 50 da a8 41 52 66 af 1c ad 38 88 4c b2 16 8c 0d 51 f9 c1 ac aa 5a ab 98 96 50 fc f5 77 a5 90 e1 32 3a cc 51 6a 71 15 fb f3 06 7f 1a 06 13 d2 b7 11 9d f3 cb 41 69 3e 51 b1 a1 ea 07 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write client certificate OpenSSL: TX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 00 46 OpenSSL: TX ver=0x303 content_type=22 (handshake/client key exchange) OpenSSL: Message - hexdump(len=70): 10 00 00 42 41 04 ae ae 8d 22 5e c5 67 44 f4 d5 51 d1 42 06 be b7 fa 30 ec fa 7e 60 ef 86 77 64 aa 73 c6 69 60 b4 0c c7 30 d4 95 b5 c2 eb 7a c1 7d 0a a0 ea 85 9b 82 e1 b5 5b 35 8a cd 08 ba 1c cf fc 45 d5 e5 8d SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write client key exchange OpenSSL: TX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 01 88 OpenSSL: TX ver=0x303 content_type=22 (handshake/certificate verify) OpenSSL: Message - hexdump(len=392): 0f 00 01 84 08 04 01 80 69 65 7f ab ac 20 b2 0f d3 c4 43 fb ac ca 1e 74 66 74 9d 93 de 4c 0f 35 5b 5a ae fc b3 d7 dd f3 ec 7c ee b4 1b 22 14 ab f7 b2 30 33 b5 f5 47 b5 25 f9 54 fd 25 60 ec 23 f6 25 af e3 c3 cf 50 04 14 c8 a4 f6 b9 f9 1f d9 37 d7 89 cc 04 c1 46 24 ba 48 86 8e 4a 77 25 f5 b1 41 59 e8 f2 6a df 1d 2d 6c 38 55 ce 61 ea 90 f2 5d 69 0d 1a ee 45 1d af 6e 99 83 b2 5a fb 7b 1d 4a a0 c6 83 29 5f b4 20 95 88 46 44 3b 43 f7 7f 62 68 2c fc b4 b3 5f d2 0d eb a7 a2 d4 8b 16 7f 8c 0c 26 fc 6b 7a e5 d4 61 1a 93 ae db 59 60 17 ec f6 82 e3 2d d0 db 3d 65 d3 47 f6 60 6f b2 2a 95 79 8e 6f 35 3d d3 19 cd a6 e7 62 18 b0 a1 bd d2 ee e3 fe 73 48 c8 71 af 6b 4c e2 77 63 87 47 bc 77 83 b3 dd 4e 4e 30 57 ce 29 6a 10 52 a5 c2 93 66 ff e6 4d 59 ba 34 3b 45 c4 a3 d3 0c 7a cb 5e 39 c1 b3 9f bd 97 c4 5b 15 29 1a 18 3f a3 ec 7a bd 7a e4 16 ba 43 f4 dc 1d 03 ca 31 ea 11 c0 73 77 00 43 fa 91 d3 7f 77 0e 5b 1a 09 a3 96 63 7e 06 3c b8 3d dc 3a 54 93 00 78 f0 9f 2f fd 44 a9 10 73 66 84 ee 22 99 dd 25 39 1c 39 38 06 05 a9 5a 28 4e 2b aa 39 7c 63 d3 df aa 37 d0 14 3f e2 76 76 37 45 ba 2b 3a a6 6e a5 ac bd 74 77 32 77 48 37 a3 a4 02 c3 66 50 c2 f7 86 93 30 0d fd 59 b8 b7 a8 e2 3d 8a SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write certificate verify OpenSSL: TX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 14 03 03 00 01 OpenSSL: TX ver=0x303 content_type=20 (change cipher spec/) OpenSSL: Message - hexdump(len=1): 01 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write change cipher spec OpenSSL: TX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 00 28 OpenSSL: TX ver=0x303 content_type=22 (handshake/finished) OpenSSL: Message - hexdump(len=16): 14 00 00 0c 25 17 f5 0f 9a d8 7d 99 29 4b 68 f8 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write finished SSL: (where=0x1002 ret=0xffffffff) SSL: SSL_connect:error in SSLv3/TLS write finished SSL: SSL_connect - want more data SSL: 2193 bytes pending from ssl_out SSL: Using TLS version TLSv1.2 SSL: 2193 bytes left to be sent out (of total 2193 bytes) SSL: sending 1398 bytes, more fragments will follow EAP: method process -> ignore=FALSE methodState=MAY_CONT decision=FAIL eapRespData=0x564825f2adc0 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=1408) TX EAP -> RADIUS - hexdump(len=1408): 02 96 05 80 0d c0 00 00 08 91 16 03 03 06 81 0b 00 06 7d 00 06 7a 00 06 77 30 82 06 73 30 82 04 db a0 03 02 01 02 02 0a 72 ff 95 dc f4 0c d6 88 3c 85 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 30 52 31 0b 30 09 06 03 55 04 06 13 02 44 4b 31 12 30 10 06 03 55 04 0a 0c 09 41 72 65 6e 64 74 73 65 6e 31 2f 30 2d 06 03 55 04 03 0c 26 41 72 65 6e 64 74 73 65 6e 20 44 65 76 69 63 65 73 20 49 73 73 75 73 69 6e 67 20 43 41 20 32 30 32 31 31 30 31 31 30 1e 17 0d 32 33 30 38 31 36 32 31 31 39 35 30 5a 17 0d 32 34 30 38 31 36 32 31 31 39 35 30 5a 30 81 85 31 12 30 10 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 02 64 6b 31 19 30 17 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 09 61 72 65 6e 64 74 73 65 6e 31 17 30 15 06 0a 09 92 26 89 93 f2 2c 64 01 19 16 07 64 65 76 69 63 65 73 31 10 30 0e 06 03 55 04 0b 0c 07 64 65 76 69 63 65 73 31 29 30 27 06 03 55 04 03 0c 20 36 62 64 34 61 38 36 39 38 38 33 32 34 65 35 36 62 32 64 63 64 63 66 30 35 33 31 36 31 61 30 32 30 82 01 a2 30 0d 06 09 2a 86 48 86 f7 0d 01 01 01 05 00 03 82 01 8f 00 30 82 01 8a 02 82 01 81 00 9e 1b 1c 7a 2c 83 bb 36 17 94 d3 8e b3 09 c0 77 f5 25 6f 55 aa 56 1a 13 45 85 85 03 88 81 50 44 fd 48 32 3c f2 7a 10 00 98 d4 dd d5 c8 02 40 8b 81 ab a5 31 90 51 02 56 d8 fe a4 c8 36 51 2f 84 1b af 6b bd cb b6 7c be 59 18 9b 44 93 ab 5a 1f 8b 3d c6 d3 68 96 87 0d 18 f3 a2 c2 06 00 8f ba 48 5b 2e 57 3d 4c 8b fb fb d7 a6 e9 38 dc 3e 2f 02 77 88 f4 84 11 52 0e 19 56 4c 7a 48 24 91 2c a1 8a c2 cb eb bd 92 df fe 6f d8 2d fc 5a 7a 81 fd 6c 9e 06 70 db 36 50 40 5c 5f f8 89 d3 e2 b1 3a 5a bf f6 b9 78 78 9c 6f 62 64 97 e0 69 1f 18 07 3a df 54 e0 29 28 ab 5e 2b ec d6 5c 9b b4 49 b3 83 9e d2 cc 08 df 96 14 9c 59 ca f6 e3 c0 29 61 01 a8 6f 3d 0c d7 7c 6a bc 66 33 21 a8 b9 96 12 03 3a 47 07 d7 2b 82 6f b7 cc b4 7d 56 95 ee e0 2a fb fe dc c5 15 42 4a c0 c5 63 90 88 4a 72 66 8b 81 6e 0d 54 26 c7 7d ea fa bf 0d 38 c2 12 39 ec 39 4c 79 d7 3c f2 fd 2f 10 11 81 fc 0b e6 56 89 52 46 53 ab 62 6c 87 5b 53 62 cc 75 50 ef 96 a4 88 9c e6 d9 c6 44 86 cf a0 0e a6 a1 ba 85 d8 84 69 35 8c a4 92 2a 3a 8a 3a 63 3d 9d 64 36 24 ad 7d 16 e9 d6 f6 66 1d fa 2b 34 f4 6b 1d e0 c6 d3 7c 26 2f c1 4c 07 e5 be 94 db 53 9f 33 49 ae 5e 95 68 9f e0 57 7a f4 18 d8 13 d4 ca d0 09 02 03 01 00 01 a3 82 02 15 30 82 02 11 30 81 90 06 08 2b 06 01 05 05 07 01 01 04 81 83 30 81 80 30 57 06 08 2b 06 01 05 05 07 30 02 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 44 65 76 69 63 65 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 31 2e 63 65 72 30 25 06 08 2b 06 01 05 05 07 30 01 86 19 68 74 74 70 3a 2f 2f 6f 63 73 70 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 30 1f 06 03 55 1d 23 04 18 30 16 80 14 10 1c a7 8c d7 17 69 61 c6 0b f3 8f b2 d4 7e ec 0d 11 82 27 30 0c 06 03 55 1d 13 01 01 ff 04 02 30 00 30 5c 06 03 55 1d 1f 04 55 30 53 30 51 a0 4f a0 4d 86 4b 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 64 6f 77 6e 6c 6f 61 64 2f 41 72 65 6e 64 74 73 65 6e 5f 44 65 76 69 63 65 73 5f 49 73 73 75 73 69 6e 67 5f 43 41 5f 32 30 32 31 31 30 31 31 2e 63 72 6c 30 13 06 03 55 1d 25 04 0c 30 0a 06 08 2b 06 01 05 05 07 03 02 30 0e 06 03 55 1d 0f 01 01 ff 04 04 03 02 07 80 30 81 aa 06 03 55 1d 20 04 81 a2 30 81 9f 30 81 9c 06 03 2a 03 04 30 81 94 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 2c 06 08 2b 06 01 05 05 07 02 01 16 20 68 74 74 70 3a 2f 2f 70 6b 69 2e 61 72 65 6e 64 74 73 65 6e 2e 64 6b 2f 63 70 73 2e 68 74 6d 6c 30 36 06 08 2b 06 01 05 05 07 02 02 30 2a 1a 28 54 68 69 73 20 69 73 20 61 20 63 6f 6d 6d 65 6e 74 20 66 6f 72 20 70 6f 6c 69 63 79 20 6f 69 64 20 31 2e 32 2e 33 2e 34 30 1d 06 03 55 1d 0e 04 16 04 14 ae 82 62 6f ea a4 ff be d0 36 fe ad c8 6c 4c ae 4a d1 e6 ce 30 0d 06 09 2a 86 48 86 f7 0d 01 01 0b 05 00 03 82 01 81 00 9f 51 f4 e9 bc c4 90 73 f4 a2 48 67 42 5a 42 19 69 c5 dd 1d ec eb 04 b6 c1 1f 41 7b fe a3 95 81 2a a5 d3 6e 59 31 29 25 02 79 35 72 10 96 c0 02 b8 ee 2f a4 52 27 3c 75 33 6f 78 c2 56 da 5a 25 f9 e6 8c 3c 3b d7 ca 04 fc 08 6d a9 d5 22 58 9d 29 a0 30 b3 a8 6a 88 83 23 cd b2 6f 6b 26 9d 6d 69 d6 89 b8 c4 64 e7 f0 1c de b0 8a a0 51 71 27 Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=4 length=1577 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 6365733110300e060355040b0c07646576696365733129302706035504030c203662643461383639383833323465353662326463646366303533313631613032308201a2300d06092a864886f70d01010105000382018f003082018a02820181009e1b1c7a2c83bb361794d38eb309c077f5256f55aa561a134585850388815044fd48323cf27a100098d4ddd5c802408b81aba53190510256d8fea4c836512f841baf6bbdcbb67cbe59189b4493ab5a1f8b3dc6d36896870d18f3a2c206008fba485b2e573d4c8bfbfbd7a6e938dc3e2f027788f48411520e19564c7a4824912ca18ac2cbebbd92dffe6fd82dfc5a7a81fd6c9e0670db3650405c5ff8 Attribute 79 (EAP-Message) length=255 Value: 89d3e2b13a5abff6b978789c6f626497e0691f18073adf54e02928ab5e2becd65c9bb449b3839ed2cc08df96149c59caf6e3c0296101a86f3d0cd77c6abc663321a8b99612033a4707d72b826fb7ccb47d5695eee02afbfedcc515424ac0c56390884a72668b816e0d5426c77deafabf0d38c21239ec394c79d73cf2fd2f101181fc0be65689524653ab626c875b5362cc7550ef96a4889ce6d9c64486cfa00ea6a1ba85d88469358ca4922a3a8a3a633d9d643624ad7d16e9d6f6661dfa2b34f46b1de0c6d37c262fc14c07e5be94db539f3349ae5e95689fe0577af418d813d4cad0090203010001a38202153082021130819006082b060105050701 Attribute 79 (EAP-Message) length=255 Value: 01048183308180305706082b06010505073002864b687474703a2f2f706b692e6172656e647473656e2e646b2f646f776e6c6f61642f4172656e647473656e5f446576696365735f4973737573696e675f43415f32303231313031312e636572302506082b060105050730018619687474703a2f2f6f6373702e6172656e647473656e2e646b2f301f0603551d23041830168014101ca78cd7176961c60bf38fb2d47eec0d118227300c0603551d130101ff04023000305c0603551d1f045530533051a04fa04d864b687474703a2f2f706b692e6172656e647473656e2e646b2f646f776e6c6f61642f4172656e647473656e5f446576696365735f49 Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=145 Value: 36feadc86c4cae4ad1e6ce300d06092a864886f70d01010b050003820181009f51f4e9bcc49073f4a24867425a421969c5dd1deceb04b6c11f417bfea395812aa5d36e59312925027935721096c002b8ee2fa452273c75336f78c256da5a25f9e68c3c3bd7ca04fc086da9d522589d29a030b3a86a888323cdb26f6b269d6d69d689b8c464e7f01cdeb08aa0517127 Attribute 24 (State) length=18 Value: 714db82072dbb5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: 1efe45f44e13e5875bd3953a2ffdd34e Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 64 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=4 length=64 Attribute 79 (EAP-Message) length=8 Value: 019700060d00 Attribute 80 (Message-Authenticator) length=18 Value: bdc0e2d47fc339793068b5d7535de495 Attribute 24 (State) length=18 Value: 714db82075dab5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=151 len=6) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=151 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state METHOD SSL: Received packet(len=6) - Flags 0x00 SSL: 795 bytes left to be sent out (of total 2193 bytes) EAP: method process -> ignore=FALSE methodState=MAY_CONT decision=FAIL eapRespData=0x564825f1b4c0 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=801) TX EAP -> RADIUS - hexdump(len=801): 02 97 03 21 0d 00 3e a1 52 1a 30 18 be c7 59 74 a6 ae 20 db 06 b5 32 b8 6f 4e 44 2a 04 52 f8 e8 db 48 c4 5c 9b e8 69 5b cf b4 2e fd e7 71 6b b2 1f 5a 51 bd 15 e7 16 92 15 ba c1 90 d8 61 a3 f1 2d 83 7e 67 80 15 33 8c dc af 2e a5 b8 09 56 e3 28 2a 76 5a 2c 61 42 d3 16 8a 02 55 cd 99 e9 10 c7 91 15 3b 09 4f 13 25 2c 4f 67 17 91 4e a1 df 86 35 b4 df f0 34 a7 e1 a3 ca 04 4c b6 d9 8b 0a 7a d1 16 dd 9d 9f 15 ee 4f 45 e5 c0 bc 99 9d 8a 99 26 23 11 84 49 f2 95 11 da 7f ee 4f 57 8c 07 0c 32 19 8f 57 92 de 48 09 cd 4a d2 81 b3 ec 50 3f 5d 12 fc 51 7b 7a d1 a6 c2 30 b9 3c 4e 98 1c 7a 5e 24 a5 8b 74 cc dc 0d 57 fc 9e e8 53 5d 61 35 2a 9e ef b7 ac 93 e5 43 42 50 da a8 41 52 66 af 1c ad 38 88 4c b2 16 8c 0d 51 f9 c1 ac aa 5a ab 98 96 50 fc f5 77 a5 90 e1 32 3a cc 51 6a 71 15 fb f3 06 7f 1a 06 13 d2 b7 11 9d f3 cb 41 69 3e 51 b1 a1 ea 07 16 03 03 00 46 10 00 00 42 41 04 ae ae 8d 22 5e c5 67 44 f4 d5 51 d1 42 06 be b7 fa 30 ec fa 7e 60 ef 86 77 64 aa 73 c6 69 60 b4 0c c7 30 d4 95 b5 c2 eb 7a c1 7d 0a a0 ea 85 9b 82 e1 b5 5b 35 8a cd 08 ba 1c cf fc 45 d5 e5 8d 16 03 03 01 88 0f 00 01 84 08 04 01 80 69 65 7f ab ac 20 b2 0f d3 c4 43 fb ac ca 1e 74 66 74 9d 93 de 4c 0f 35 5b 5a ae fc b3 d7 dd f3 ec 7c ee b4 1b 22 14 ab f7 b2 30 33 b5 f5 47 b5 25 f9 54 fd 25 60 ec 23 f6 25 af e3 c3 cf 50 04 14 c8 a4 f6 b9 f9 1f d9 37 d7 89 cc 04 c1 46 24 ba 48 86 8e 4a 77 25 f5 b1 41 59 e8 f2 6a df 1d 2d 6c 38 55 ce 61 ea 90 f2 5d 69 0d 1a ee 45 1d af 6e 99 83 b2 5a fb 7b 1d 4a a0 c6 83 29 5f b4 20 95 88 46 44 3b 43 f7 7f 62 68 2c fc b4 b3 5f d2 0d eb a7 a2 d4 8b 16 7f 8c 0c 26 fc 6b 7a e5 d4 61 1a 93 ae db 59 60 17 ec f6 82 e3 2d d0 db 3d 65 d3 47 f6 60 6f b2 2a 95 79 8e 6f 35 3d d3 19 cd a6 e7 62 18 b0 a1 bd d2 ee e3 fe 73 48 c8 71 af 6b 4c e2 77 63 87 47 bc 77 83 b3 dd 4e 4e 30 57 ce 29 6a 10 52 a5 c2 93 66 ff e6 4d 59 ba 34 3b 45 c4 a3 d3 0c 7a cb 5e 39 c1 b3 9f bd 97 c4 5b 15 29 1a 18 3f a3 ec 7a bd 7a e4 16 ba 43 f4 dc 1d 03 ca 31 ea 11 c0 73 77 00 43 fa 91 d3 7f 77 0e 5b 1a 09 a3 96 63 7e 06 3c b8 3d dc 3a 54 93 00 78 f0 9f 2f fd 44 a9 10 73 66 84 ee 22 99 dd 25 39 1c 39 38 06 05 a9 5a 28 4e 2b aa 39 7c 63 d3 df aa 37 d0 14 3f e2 76 76 37 45 ba 2b 3a a6 6e a5 ac bd 74 77 32 77 48 37 a3 a4 02 c3 66 50 c2 f7 86 93 30 0d fd 59 b8 b7 a8 e2 3d 8a 14 03 03 00 01 01 16 03 03 00 28 01 4a 4b bc 9f 03 29 ec 1d 02 54 5d ee d5 f0 06 c1 42 99 67 3f c3 e8 3c c1 a3 8a d4 66 14 dc 6a ff b1 b2 20 f2 cd 58 ae Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=5 length=966 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=255 Value: 516a7115fbf3067f1a0613d2b7119df3cb41693e51b1a1ea071603030046100000424104aeae8d225ec56744f4d551d14206beb7fa30ecfa7e60ef867764aa73c66960b40cc730d495b5c2eb7ac17d0aa0ea859b82e1b55b358acd08ba1ccffc45d5e58d16030301880f0001840804018069657fabac20b20fd3c443fbacca1e7466749d93de4c0f355b5aaefcb3d7ddf3ec7ceeb41b2214abf7b23033b5f547b525f954fd2560ec23f625afe3c3cf500414c8a4f6b9f91fd937d789cc04c14624ba48868e4a7725f5b14159e8f26adf1d2d6c3855ce61ea90f25d690d1aee451daf6e9983b25afb7b1d4aa0c683295fb420958846443b43f77f62682c Attribute 79 (EAP-Message) length=255 Value: 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 Attribute 79 (EAP-Message) length=44 Value: 0028014a4bbc9f0329ec1d02545deed5f006c14299673fc3e83cc1a38ad46614dc6affb1b220f2cd58ae Attribute 24 (State) length=18 Value: 714db82075dab5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: adb31f3228ef8dcb1f2f19f2293961eb Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 119 bytes from RADIUS server Received RADIUS message RADIUS message: code=11 (Access-Challenge) identifier=5 length=119 Attribute 79 (EAP-Message) length=63 Value: 0198003d0d80000000331403030001011603030028f861fe0b34146dfcaf5aaaec0a5272a5f9df177450e4b52046238bcbbaae0cc7ad157199059d8872 Attribute 80 (Message-Authenticator) length=18 Value: 8907e67ef4663339d8d3dddc94e12024 Attribute 24 (State) length=18 Value: 714db82074d5b5e1583d745a3b253418 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station decapsulated EAP packet (code=1 id=152 len=61) from RADIUS server: EAP-Request-TLS (13) EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Request id=152 method=13 vendor=0 vendorMethod=0 EAP: EAP entering state METHOD SSL: Received packet(len=61) - Flags 0x80 SSL: TLS Message Length: 51 OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 14 03 03 00 01 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS write finished OpenSSL: RX ver=0x303 content_type=256 (TLS header info/) OpenSSL: Message - hexdump(len=5): 16 03 03 00 28 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read change cipher spec OpenSSL: RX ver=0x303 content_type=22 (handshake/finished) OpenSSL: Message - hexdump(len=16): 14 00 00 0c 3b f5 e1 1a ef 76 a4 4c b5 fd 16 99 SSL: (where=0x1001 ret=0x1) SSL: SSL_connect:SSLv3/TLS read finished SSL: (where=0x20 ret=0x1) SSL: (where=0x1002 ret=0x1) SSL: 0 bytes pending from ssl_out OpenSSL: Handshake finished - resumed=0 SSL: No Application Data included SSL: Using TLS version TLSv1.2 SSL: No data to be sent out EAP-TLS: Done EAP-TLS: Derived key - hexdump(len=64): a2 46 8d 72 6d 04 c7 e7 5d a0 a5 13 ab 19 86 64 21 4c ba 35 51 3f 0d 73 d7 c4 ad 12 98 29 89 3e 54 6a f6 89 87 bf 3d 4e f8 33 7f 74 d0 84 46 b1 2c bc a4 ce d6 18 37 e5 a9 b3 97 07 f7 7a 48 f1 EAP-TLS: Derived EMSK - hexdump(len=64): 5f 20 bb 1d 23 1b 2f c9 75 c0 1a cf 3c 3c fe d4 53 d9 2f 94 57 c8 2e ea c2 72 03 dc c6 18 ed 05 39 15 bf a1 8d 60 5e 5b 00 e3 dc 11 0b 43 66 e7 bf 5a 90 b4 2c 92 38 7d 0c 9e 21 7e 41 b2 0e e6 EAP-TLS: Derived Session-Id - hexdump(len=65): 0d 1d 1c e0 50 b1 5b 04 3d 3f dc 93 2d f1 b9 44 cd 12 e2 b6 28 83 95 42 bf f3 36 76 f0 f4 74 da 03 71 03 63 2e 71 24 9b bc a3 66 c7 8b cb 84 1f 24 4c 24 8b 22 35 46 77 c1 5b cc 3f 5a 35 93 da 50 SSL: Building ACK (type=13 id=152 ver=0) EAP: method process -> ignore=FALSE methodState=DONE decision=UNCOND_SUCC eapRespData=0x564825f48460 EAP: Session-Id - hexdump(len=65): 0d 1d 1c e0 50 b1 5b 04 3d 3f dc 93 2d f1 b9 44 cd 12 e2 b6 28 83 95 42 bf f3 36 76 f0 f4 74 da 03 71 03 63 2e 71 24 9b bc a3 66 c7 8b cb 84 1f 24 4c 24 8b 22 35 46 77 c1 5b cc 3f 5a 35 93 da 50 EAP: EAP entering state SEND_RESPONSE EAP: EAP entering state IDLE EAPOL: SUPP_BE entering state RESPONSE EAPOL: txSuppRsp WPA: eapol_test_eapol_send(type=0 len=6) TX EAP -> RADIUS - hexdump(len=6): 02 98 00 06 0d 00 Encapsulating EAP message into a RADIUS packet Copied RADIUS State Attribute Sending RADIUS message to authentication server RADIUS message: code=1 (Access-Request) identifier=6 length=165 Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 4 (NAS-IP-Address) length=6 Value: 127.0.0.1 Attribute 31 (Calling-Station-Id) length=19 Value: '02-00-00-00-00-01' Attribute 12 (Framed-MTU) length=6 Value: 1400 Attribute 61 (NAS-Port-Type) length=6 Value: 19 Attribute 6 (Service-Type) length=6 Value: 2 Attribute 77 (Connect-Info) length=24 Value: 'CONNECT 11Mbps 802.11b' Attribute 79 (EAP-Message) length=8 Value: 029800060d00 Attribute 24 (State) length=18 Value: 714db82074d5b5e1583d745a3b253418 Attribute 80 (Message-Authenticator) length=18 Value: 05fb65cb6264ce5c9a215eb25dde9f09 Next RADIUS client retransmit in 3 seconds EAPOL: SUPP_BE entering state RECEIVE Received 200 bytes from RADIUS server Received RADIUS message RADIUS message: code=2 (Access-Accept) identifier=6 length=200 Attribute 26 (Vendor-Specific) length=58 Value: 000001371134851f4cd5c2993a51aeeb74bb680c99950dfb85fc2a80f18da31ffabf0f713208acd715e62f910deb148edafe6e83fcc49db6 Attribute 26 (Vendor-Specific) length=58 Value: 0000013710348a4c3989119e11e44f4948c5224b46dd3522b04bf02da25bf76505a5b5594a1a3e173f5704732d6a2e81ee439ca35349672a Attribute 79 (EAP-Message) length=6 Value: 03980004 Attribute 80 (Message-Authenticator) length=18 Value: aeae27cda7aa4a630a5a05659dd9ef0e Attribute 1 (User-Name) length=34 Value: '6bd4a86988324e56b2dcdcf053161a02' Attribute 12 (Framed-MTU) length=6 Value: 994 STA 02:00:00:00:00:01: Received RADIUS packet matched with a pending request, round trip time 0.00 sec RADIUS packet matching with station MS-MPPE-Send-Key (sign) - hexdump(len=32): 54 6a f6 89 87 bf 3d 4e f8 33 7f 74 d0 84 46 b1 2c bc a4 ce d6 18 37 e5 a9 b3 97 07 f7 7a 48 f1 MS-MPPE-Recv-Key (crypt) - hexdump(len=32): a2 46 8d 72 6d 04 c7 e7 5d a0 a5 13 ab 19 86 64 21 4c ba 35 51 3f 0d 73 d7 c4 ad 12 98 29 89 3e decapsulated EAP packet (code=3 id=152 len=4) from RADIUS server: EAP Success EAPOL: Received EAP-Packet frame EAPOL: SUPP_BE entering state REQUEST EAPOL: getSuppRsp EAP: EAP entering state RECEIVED EAP: Received EAP-Success EAP: Status notification: completion (param=success) EAP: EAP entering state SUCCESS CTRL-EVENT-EAP-SUCCESS EAP authentication completed successfully EAPOL: IEEE 802.1X for plaintext connection; no EAPOL-Key frames required WPA: EAPOL processing complete Cancelling authentication timeout State: DISCONNECTED -> COMPLETED EAPOL: SUPP_PAE entering state AUTHENTICATED EAPOL: SUPP_BE entering state RECEIVE EAPOL: SUPP_BE entering state SUCCESS EAPOL: SUPP_BE entering state IDLE eapol_sm_cb: result=1 EAPOL: Successfully fetched key (len=32) PMK from EAPOL - hexdump(len=32): a2 46 8d 72 6d 04 c7 e7 5d a0 a5 13 ab 19 86 64 21 4c ba 35 51 3f 0d 73 d7 c4 ad 12 98 29 89 3e No EAP-Key-Name received from server WPA: Clear old PMK and PTK EAP: deinitialize previously used EAP method (13, TLS) at EAP deinit ENGINE: engine deinit MPPE keys OK: 1 mismatch: 0 SUCCESS