***GOT REQUEST TO UPDATE***Currently running OPNsense 22.7.6 (amd64/OpenSSL) at Fri Dec 2 15:06:46 CET 2022Updating OPNsense repository catalogue...OPNsense repository is up to date.All repositories are up to date.Updating OPNsense repository catalogue...OPNsense repository is up to date.All repositories are up to date.Checking for upgrades (4 candidates): .... doneProcessing candidates (4 candidates): .... doneChecking integrity... done (0 conflicting)The following 4 package(s) will be affected (of 0 checked):Installed packages to be UPGRADED: freeradius3: 3.0.25 -> 3.2.1 opnsense: 22.7.6 -> 22.7.9 os-freeradius: 1.9.21 -> 1.9.21_2 os-nut: 1.8.1 -> 1.8.1_1Number of packages to be upgraded: 4[1/4] Upgrading freeradius3 from 3.0.25 to 3.2.1...===> Creating groups.Using existing group 'freeradius'.===> Creating usersUsing existing user 'freeradius'.===> Setting user and group in radiusd.conf[1/4] Extracting freeradius3-3.2.1: .......... doneYou should remove /usr/local/etc/raddb if you don't need it any more.freeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-dhcp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-dhcp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-dhcp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-eap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-eap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-eap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-radius.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-radius.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-radius.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-server.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-server.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/libfreeradius-server.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_dhcp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_dhcp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_dhcp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_vmps.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_vmps.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/proto_vmps.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_always.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_always.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_always.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_attr_filter.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_attr_filter.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_attr_filter.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache_rbtree.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache_rbtree.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cache_rbtree.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_chap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_chap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_chap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_counter.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_counter.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_counter.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cram.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cram.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_cram.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_date.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_date.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_date.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_detail.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_detail.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_detail.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dhcp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dhcp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dhcp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_digest.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_digest.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_digest.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dynamic_clients.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dynamic_clients.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_dynamic_clients.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_fast.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_fast.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_fast.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_gtc.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_gtc.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_gtc.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_md5.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_md5.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_md5.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_mschapv2.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_mschapv2.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_mschapv2.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_peap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_peap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_peap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_pwd.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_pwd.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_pwd.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_sim.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_sim.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_sim.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_tls.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_tls.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_tls.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_ttls.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_ttls.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_eap_ttls.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_exec.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_exec.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_exec.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expiration.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expiration.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expiration.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expr.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expr.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_expr.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_files.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_files.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_files.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ippool.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ippool.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ippool.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_krb5.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_krb5.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_krb5.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ldap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ldap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_ldap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_linelog.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_linelog.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_linelog.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_logintime.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_logintime.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_logintime.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_mschap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_mschap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_mschap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_otp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_otp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_otp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pam.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pam.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pam.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pap.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pap.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_pap.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_passwd.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_passwd.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_passwd.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_perl.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_perl.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_perl.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_preprocess.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_preprocess.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_preprocess.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_radutmp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_radutmp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_radutmp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_realm.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_realm.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_realm.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_replicate.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_replicate.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_replicate.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_soh.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_soh.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_soh.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sometimes.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sometimes.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sometimes.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_map.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_map.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_map.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_mysql.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_mysql.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_mysql.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_null.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_null.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_null.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_sqlite.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_sqlite.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sql_sqlite.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlcounter.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlcounter.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlcounter.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlippool.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlippool.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_sqlippool.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_test.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_test.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_test.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_totp.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_totp.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_totp.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unix.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unix.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unix.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unpack.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unpack.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_unpack.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_utf8.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_utf8.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_utf8.sofreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_wimax.afreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_wimax.lafreeradius3-3.0.25: missing file /usr/local/lib/freeradius-3.0.25/rlm_wimax.sofreeradius3-3.0.25: missing file /usr/local/share/examples/freeradius/raddb/mods-available/cache_eapfreeradius3-3.0.25: missing file /usr/local/share/examples/freeradius/raddb/mods-available/otpfreeradius3-3.0.25: missing file /usr/local/share/examples/freeradius/raddb/mods-config/sql/main/sqlite/process-radacct-refresh.shfreeradius3-3.0.25: missing file /usr/local/share/examples/freeradius/raddb/mods-enabled/cache_eapfreeradius3-3.0.25: missing file /usr/local/share/licenses/freeradius3-3.0.25/GPLv2freeradius3-3.0.25: missing file /usr/local/share/licenses/freeradius3-3.0.25/LICENSEfreeradius3-3.0.25: missing file /usr/local/share/licenses/freeradius3-3.0.25/catalog.mkpkg-static: Fail to set time on /var/log/radacct:No such file or directoryStarting web GUI...done.Generating RRD graphs...done.***DONE***
Same issue here, updating from 22.7.8. Tried updating from console as well and the update process just stops suddenly.
Number of packages to be removed: 1[1/1] Deinstalling os-freeradius-1.9.21_2...[1/1] Deleting files for os-freeradius-1.9.21_2: .......... doneReloading plugin configurationChecking integrity... done (0 conflicting)Deinstallation has been requested for the following 8 packages:Installed packages to be REMOVED: freeradius3: 3.2.1 groff: 1.22.4_4 libpaper: 1.1.28 mysql57-client: 5.7.40 protobuf: 3.21.7,1 psutils: 1.17_5 talloc: 2.3.4 uchardet: 0.0.7Number of packages to be removed: 8The operation will free 102 MiB.[1/8] Deinstalling freeradius3-3.2.1...You should remove /usr/local/etc/raddb if you don't need it any more.[1/8] Deleting files for freeradius3-3.2.1: .......... done==> You should manually remove the "freeradius" user. ==> You should manually remove the "freeradius" group [2/8] Deinstalling mysql57-client-5.7.40...[2/8] Deleting files for mysql57-client-5.7.40: .......... done[3/8] Deinstalling groff-1.22.4_4...[3/8] Deleting files for groff-1.22.4_4: .......... done[4/8] Deinstalling psutils-1.17_5...[4/8] Deleting files for psutils-1.17_5: .......... done[5/8] Deinstalling talloc-2.3.4...[5/8] Deleting files for talloc-2.3.4: .......... done[6/8] Deinstalling libpaper-1.1.28...[6/8] Deleting files for libpaper-1.1.28: .......... done[7/8] Deinstalling protobuf-3.21.7,1...[7/8] Deleting files for protobuf-3.21.7,1: .......... done[8/8] Deinstalling uchardet-0.0.7...[8/8] Deleting files for uchardet-0.0.7: .......... done***DONE***
root@OPNsense:~ # pkg remove freeradius3No packages matched for pattern 'freeradius3'Checking integrity... done (0 conflicting)1 packages requested for removal: 0 locked, 1 missingroot@OPNsense:~ # pkg remove freeradiusNo packages matched for pattern 'freeradius'Checking integrity... done (0 conflicting)1 packages requested for removal: 0 locked, 1 missing
***GOT REQUEST TO INSTALL***Currently running OPNsense 22.7.9 (amd64/OpenSSL) at Sun Dec 4 09:23:48 CET 2022Updating OPNsense repository catalogue...OPNsense repository is up to date.All repositories are up to date.Checking integrity... done (0 conflicting)The following 9 package(s) will be affected (of 0 checked):New packages to be INSTALLED: freeradius3: 3.2.1 groff: 1.22.4_4 libpaper: 1.1.28 mysql57-client: 5.7.40 os-freeradius: 1.9.21_2 protobuf: 3.21.7,1 psutils: 1.17_5 talloc: 2.3.4 uchardet: 0.0.7Number of packages to be installed: 9The process will require 103 MiB more space.[1/9] Installing libpaper-1.1.28...[1/9] Extracting libpaper-1.1.28: .......... done[2/9] Installing uchardet-0.0.7...[2/9] Extracting uchardet-0.0.7: .......... done[3/9] Installing psutils-1.17_5...[3/9] Extracting psutils-1.17_5: .......... done[4/9] Installing groff-1.22.4_4...[4/9] Extracting groff-1.22.4_4: .......... done[5/9] Installing protobuf-3.21.7,1...[5/9] Extracting protobuf-3.21.7,1: .......... done[6/9] Installing talloc-2.3.4...[6/9] Extracting talloc-2.3.4: .......... done[7/9] Installing mysql57-client-5.7.40...[7/9] Extracting mysql57-client-5.7.40: .......... done[8/9] Installing freeradius3-3.2.1...===> Creating groups.Using existing group 'freeradius'.===> Creating usersUsing existing user 'freeradius'.===> Setting user and group in radiusd.conf[8/9] Extracting freeradius3-3.2.1: .......... done===> Adjusting ownership of directory /usr/local/etc/raddb===> Adjusting ownership of directory /var/log/radacct===> Adjusting ownership of directory /var/run/radiusd===> Adjusting ownership of /var/log/radius.log===> Adjusting ownership of /var/log/radutmp===> Adjusting ownership of /var/log/radwtmp===> Updating libdir in /usr/local/etc/raddb/radiusd.conf[9/9] Installing os-freeradius-1.9.21_2...[9/9] Extracting os-freeradius-1.9.21_2: .......... doneStopping configd...doneStarting configd.Reloading plugin configurationConfiguring system logging...done.Reloading template OPNsense/Freeradius: OKReloading template OPNsense/Syslog: OK=====Message from groff-1.22.4_4:--In order to be able to use the html driver, you need to install the followingpackages: - ghostscript - netpbm=====Message from mysql57-client-5.7.40:--This is the mysql CLIENT without the server.for complete server and client, please install databases/mysql57-server=====Message from freeradius3-3.2.1:--To enable FreeRADIUS, put the following line in /etc/rc.confradiusd_enable="YES"The sample configuration can be found at/usr/local/share/examples/freeradius/raddbIf you are upgrading FreeRADIUS, you are advised to use this as a referencefor updating your configuration.FreeRADIUS will look for its configuration directory at/usr/local/etc/raddb by default.If you did not already have a configuration at this location, the sampleconfiguration has been copied to this location and has been bootstrapped.If you wish to point FreeRADIUS to a configuration at a differentlocation, put the following line in /etc/rc.confradiusd_flags="-d /path/to/raddb"To start the server in normal (daemon) mode, run:/usr/local/etc/rc.d/radiusd startand to stop the server, run:/usr/local/etc/rc.d/radiusd stopTo start the server in debugging mode, run:/usr/local/etc/rc.d/radiusd debugYou are advised to make cautious changes to the configuration, and to testfrequently, using debugging mode where necessary. Try to resist thetemptation to disable or delete things that you don't understand - you maywell break things!Useful configuration advice can be found in the FreeRADIUS Wiki athttp://wiki.freeradius.orgChecking integrity... done (0 conflicting)Nothing to do.***DONE***
==> radius.log <==Sun Dec 4 09:25:49 2022 : Info: Signalled to terminateSun Dec 4 09:25:49 2022 : Info: Exiting normallySun Dec 4 09:25:49 2022 : Info: Debugger not attachedSun Dec 4 09:25:49 2022 : Warning: tls: Setting DH parameters from /usr/local/etc/raddb/certs/dh - this is no longer necessary.Sun Dec 4 09:25:49 2022 : Warning: tls: You should comment out the 'dh_file' configuration item.Sun Dec 4 09:25:49 2022 : Info: Loaded virtual server <default>Sun Dec 4 09:25:49 2022 : Warning: Ignoring "sql" (see raddb/mods-available/README.rst)Sun Dec 4 09:25:49 2022 : Warning: Ignoring "ldap" (see raddb/mods-available/README.rst)Sun Dec 4 09:25:49 2022 : Info: # Skipping contents of 'if' as it is always 'false' -- /usr/local/etc/raddb/sites-enabled/inner-tunnel:327Sun Dec 4 09:25:49 2022 : Info: Loaded virtual server inner-tunnelSun Dec 4 09:25:49 2022 : Info: Loaded virtual server defaultSun Dec 4 09:25:49 2022 : Info: Loaded virtual server check-eap-tlsSun Dec 4 09:25:49 2022 : Info: Ready to process requests
++++ EXPERIMENT: Eigen FreeRADIUS server met geimporteerde OPNSense certificaten |Bron: https://gathering.tweakers.net/forum/list_messages/2081204We gebruiken hier FreeRADIUS op een Debian test doos op Proxmox. Deze geeft IP 192.168.1.207 gekregen.<code>ssh 192.168.1.207apt-get install freeradius screencd /etc/freeradius/3.0cp users users.org</code>Deze anamaken op de AP: SISD: 1337_RADIUS Security mode: WPA-Enterprise Version: WPA2-Enterprise Encryption: AES RADIUS Server IP: 192.168.1.207 RADIUS Port: 1812 RADIUS Password: testing123 <code>cp clients.conf clients.conf.org</code>Voeg onderaan toe:<code>client WIFI_1337_RADIUS { ipaddr = 192.168.1.207/24 netmask = 24 secret = testing123 shortname = WIFI_1337_RADIUS nas_type = other}</code>Bij backup maken, plaats deze NIET in de ''mods-enabled'' map.<code>cp /etc/freeradius/3.0/mods-enabled/eap /etc/freeradius/3.0/mods-enabled/eap.org</code>Aanpassen ''/etc/freeradius/3.0/mods-enabled/eap''<code>...default_eap_type = tls...tls-config tls-common { private_key_password = whatever private_key_file = ${certdir}/server.key certificate_file = ${certdir}/server.pem ca_file = ${certdir}/ca.pem......tmpdir = /var/tmp/radiusd</code><code>mkdir /var/tmp/radiusdchown freerad:freerad /var/tmp/radiusd</code>Voor de eerste test halen we de huidige "productie" certificaten van OPNsense over. We weten dat de huidige certificaten werken van OPNsense. Exporten in OPNsense GUI en we geven het wachtwoord "whatever". System: Trust: Authorities Export CA cert = ca.crt Export CA private key = ca.key System: Trust: Certificates -> RADIUS Server Certificate export user cert = server.crt export user key = server.key export p12 = server.p12 System: Trust: Certificates -> RADIUS Client Certificate export user cert = client.crt export user key = client.key export p12 = client.p12<code>scp * root@192.168.1.207:/etc/freeradius/3.0/certs</code>We moeten nog wat ''pem'' files genereren. Gebruik wachtwoord: "whatever"<code>root@radiustest:/etc/freeradius/3.0/certs# openssl pkcs12 -in server.p12 -out server.pem -clcerts -nokeysEnter Import Password:</code><code>openssl x509 -in ca.crt -out ca.pem</code><code>chown freerad:freerad /etc/freeradius/3.0/certs/*</code>Start RADIUS:<code>systemctl stop freeradius ; freeradius -X</code>Op Suse maak een nieuwe verbinding aan. Connection Name: 1337_RADIUS_OPN_CERTS SSID: 1337_RADIUS Security: WPA/WPA2 Enterprise Authentication: TLS Identity: radius-client CA certificate: ca.crt User cetificate: client.p12 User private key: client.p12 User key password: whateverResultaat: connectie werkt.++++
(14) WARNING: Outer and inner identities are the same. User privacy is compromised....(14) Virtual server sending reply(14) eap_tls: Certificate rejected by the virtual server(14) eap: ERROR: Failed continuing EAP TLS (13) session. EAP sub-module failed(14) eap: Sending EAP Failure (code 4) ID 221 length 4(14) eap: Failed in EAP select(14) [eap] = invalid(14) } # authenticate = invalid(14) Failed to authenticate the user
# # Check the client certificate common name against the supplied User-Name # if (&User-Name == &TLS-Client-Cert-Common-Name || &User-Name == "host/%{TLS-Client-Cert-Common-Name}") { update config { &Auth-Type := Accept } } else { update config { #&Auth-Type := Reject &Auth-Type := Accept } }
This will disable verifying the common Name. This optionis also available via gui