diff options
Diffstat (limited to '')
-rw-r--r-- | share/dictionary.freeradius | 102 | ||||
-rw-r--r-- | share/dictionary.freeradius.internal | 12 |
2 files changed, 113 insertions, 1 deletions
diff --git a/share/dictionary.freeradius b/share/dictionary.freeradius index 0ac6182..2d7bd9c 100644 --- a/share/dictionary.freeradius +++ b/share/dictionary.freeradius @@ -187,6 +187,108 @@ ATTRIBUTE FreeRADIUS-Stats-Error 187 string ATTRIBUTE FreeRADIUS-Stats-Client-IPv6-Address 188 ipv6addr ATTRIBUTE FreeRADIUS-Stats-Server-IPv6-Address 189 ipv6addr +###################################################################### +# +# EAP-TEAP TLVs. Some are the same as EAP-FAST. some are unnecessarily different. +# +ATTRIBUTE FreeRADIUS-EAP-TEAP-TLV 190 tlv +ATTRIBUTE FreeRADIUS-EAP-TEAP-Authority-ID 190.1 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-Identity-Type 190.2 uint16 +VALUE FreeRADIUS-EAP-TEAP-Identity-Type User 1 +VALUE FreeRADIUS-EAP-TEAP-Identity-Type Machine 2 + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Result 190.3 short +VALUE FreeRADIUS-EAP-TEAP-Result Success 1 +VALUE FreeRADIUS-EAP-TEAP-Result Failure 2 + +ATTRIBUTE FreeRADIUS-EAP-TEAP-NAK 190.4 octets # 4 octet Vendor-Id + 1 octet NAK type + TLVs +ATTRIBUTE FreeRADIUS-EAP-TEAP-Error 190.5 integer +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Expires-Soon 1 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Credential-Expires-Soon 2 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Authorizations-Change-Soon 3 +VALUE FreeRADIUS-EAP-TEAP-Error Clock-Skew-Detected 4 +VALUE FreeRADIUS-EAP-TEAP-Error Contact-Administrator 5 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Credentials-Change-Requires 6 +VALUE FreeRADIUS-EAP-TEAP-Error Inner-Method-Error 1001 +VALUE FreeRADIUS-EAP-TEAP-Error Unspecified-Authentication-Infrastructure-Problem 1002 +VALUE FreeRADIUS-EAP-TEAP-Error Unspecified-Authentication-Failure 1003 +VALUE FreeRADIUS-EAP-TEAP-Error Unspecified-Authorization-Failure 1004 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Credentials-Unavailable 1005 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Expired 1006 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Locked-Try-Again-Later 1007 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Locked-Admin-Intervention-Required 1008 +VALUE FreeRADIUS-EAP-TEAP-Error Authentication-Infrastructure-Unavailable 1009 +VALUE FreeRADIUS-EAP-TEAP-Error Authentication-Infrastructure-Not-Trusted 1010 +VALUE FreeRADIUS-EAP-TEAP-Error Clock-Skew-Too-Great 1011 +VALUE FreeRADIUS-EAP-TEAP-Error Invalid-Inner-Realm 1012 +VALUE FreeRADIUS-EAP-TEAP-Error Token-Out-of-Sync-Admin-Intervention-Required 1013 +VALUE FreeRADIUS-EAP-TEAP-Error Token-Out-of-Sync-PIN-Change-Required 1014 +VALUE FreeRADIUS-EAP-TEAP-Error Token-Revoked 1015 +VALUE FreeRADIUS-EAP-TEAP-Error Tokens-Exhausted 1016 +VALUE FreeRADIUS-EAP-TEAP-Error Challenge-Expired 1017 +VALUE FreeRADIUS-EAP-TEAP-Error Challenge-Algorithm-Mismatch 1018 +VALUE FreeRADIUS-EAP-TEAP-Error Client-Certificate-Not-Supplied 1019 +VALUE FreeRADIUS-EAP-TEAP-Error Client-Certificate-Rejected 1020 +VALUE FreeRADIUS-EAP-TEAP-Error Realm-Mismatch-Inner-Outer-Identity 1021 +VALUE FreeRADIUS-EAP-TEAP-Error Unsupported-Algorithm-in-CSR 1022 +VALUE FreeRADIUS-EAP-TEAP-Error Unsupported-Extension-in-CSR 1023 +VALUE FreeRADIUS-EAP-TEAP-Error Bad-Identity-in-CSR 1024 +VALUE FreeRADIUS-EAP-TEAP-Error Bad-CSR 1025 +VALUE FreeRADIUS-EAP-TEAP-Error Internal-CA-Error 1026 +VALUE FreeRADIUS-EAP-TEAP-Error General-PKI-Error 1027 +VALUE FreeRADIUS-EAP-TEAP-Error Inner-Method-Channel-Binding-Not-Supplied 1028 +VALUE FreeRADIUS-EAP-TEAP-Error Inner-Method-Channel-Binding-Missing-Info 1029 +VALUE FreeRADIUS-EAP-TEAP-Error Inner-Method-Channel-Binding-Data-Failed 1030 +VALUE FreeRADIUS-EAP-TEAP-Error User-Account-Credentials-Incorrect 1031 +VALUE FreeRADIUS-EAP-TEAP-Error Tunnel-Compromise-Error 2001 +VALUE FreeRADIUS-EAP-TEAP-Error Unexpected-TLVs 2002 + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Channel-Binding 190.6 octets # complex format +ATTRIBUTE FreeRADIUS-EAP-TEAP-Vendor-Specific 190.7 octets # 4-octet vendor ID + TLVs +ATTRIBUTE FreeRADIUS-EAP-TEAP-Request-Action 190.8 octets # 1 octet + sub TLVs +ATTRIBUTE FreeRADIUS-EAP-TEAP-EAP-Payload 190.9 octets # EAP packet + TLVs + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Intermediate-Result 190.10 short +VALUE FreeRADIUS-EAP-TEAP-Intermediate-Result Success 1 +VALUE FreeRADIUS-EAP-TEAP-Intermediate-Result Failure 2 + +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC 190.11 tlv +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Key 190.11.1 octets + +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Opaque 190.11.2 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Lifetime 190.11.3 integer +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-A-ID 190.11.4 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-I-ID 190.11.5 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-A-ID-Info 190.11.7 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Acknowledgement 190.11.8 short +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-TLV 190.11.9 tlv +ATTRIBUTE FreeRADIUS-EAP-TRAP-PAC-Type 186.11.10 short +# +# Sub-TLVs with the same numbers as the similar ones above. +# +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-PAC-Lifetime 190.11.9.3 integer +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-A-ID 190.11.9.4 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-I-ID 190.11.9.5 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-A-ID-Info 190.11.9.7 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Info-PAC-Type 190.11.9.10 short + +ATTRIBUTE FreeRADIUS-EAP-TEAP-PAC-Type 190.11.10 short + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Crypto-Binding 190.12 octets # complex struct + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Basic-Password-Auth-Req 190.13 string +ATTRIBUTE FreeRADIUS-EAP-TEAP-Basic-Password-Auth-Resp 190.14 octets # complex struct + +ATTRIBUTE FreeRADIUS-EAP-TEAP-PKCS7 190.15 octets +ATTRIBUTE FreeRADIUS-EAP-TEAP-PKCS10 190.16 octets + +ATTRIBUTE FreeRADIUS-EAP-TEAP-Trusted-Server-Root 190.17 octets # 1 octet + sub TLVs + +# +# End of EAP-TEAP +# +###################################################################### + # 190 is reserved ATTRIBUTE FreeRADIUS-Total-Auth-Conflicts 191 integer diff --git a/share/dictionary.freeradius.internal b/share/dictionary.freeradius.internal index bc6008c..52b9bb8 100644 --- a/share/dictionary.freeradius.internal +++ b/share/dictionary.freeradius.internal @@ -235,6 +235,10 @@ ATTRIBUTE MS-CHAP-New-NT-Password 1137 octets ATTRIBUTE Stripped-User-Domain 1138 string ATTRIBUTE Called-Station-SSID 1139 string +ATTRIBUTE Called-Station-MAC 1140 octets +ATTRIBUTE Pre-Shared-Key 1141 string +ATTRIBUTE Pairwise-Master-Key 1142 octets +ATTRIBUTE PSK-Identity 1143 string ATTRIBUTE OTP-Challenge 1145 string ATTRIBUTE EAP-Session-Id 1146 octets @@ -299,6 +303,8 @@ VALUE Proxy-Tunneled-Request-As-EAP No 0 VALUE Proxy-Tunneled-Request-As-EAP Yes 1 ATTRIBUTE Temp-Home-Server-String 1198 string +ATTRIBUTE TOTP-Time-Offset 1199 signed + # # Range: 1200-1279 # EAP-SIM (and other EAP type) weirdness. @@ -405,6 +411,8 @@ ATTRIBUTE EAP-Type-EAP-AKA2 1330 octets ATTRIBUTE EAP-Type-EAP-GPSK 1331 octets ATTRIBUTE EAP-Type-EAP-PWD 1332 octets ATTRIBUTE EAP-Type-EAP-EVEv1 1333 octets +ATTRIBUTE EAP-Type-EAP-PT-EAP 1334 octets +ATTRIBUTE EAP-Type-EAP-TEAP 1335 octets ATTRIBUTE EAP-Type-Microsoft-MS-CHAPv2 1306 octets ATTRIBUTE EAP-Type-Cisco-MS-CHAPv2 1309 octets @@ -651,7 +659,7 @@ ATTRIBUTE Radclient-Test-Name 2200 string # Free # # Range: 3000-3999 -# Site-local attributes (see raddb/dictionary.in) +# Site-local attributes (see raddb/dictionary) # Do NOT define attributes in this range! # # Range: 4000-65535 @@ -861,6 +869,8 @@ VALUE EAP-Type AKA2 50 VALUE EAP-Type GPSK 51 VALUE EAP-Type PWD 52 VALUE EAP-Type EKEv1 53 +VALUE EAP-Type PT-EAP 54 +VALUE EAP-Type TEAP 55 # # And this is what most people mean by MS-CHAPv2 |