First time here? Check out the FAQ!
THIS IS A TEST INSTANCE. Feel free to ask and answer questions, but take care to avoid triggering too many notifications.
0

EAP-5G decoding issue for NWu interface(Ue and N3IWF) for 5G wifi calling

Hi Interface: NWu Entities; UE and N3IWF

In 5G for vowifi Standalone solution N3IWF is introcuded which is enhancement of epdg in 4G.

EAP is enhanced to have EAP 5G-start flow whenever IKE_AUTH is received without authentication payload.

Wireshark is not decoding this EAP section within the IKE session

Internet Security Association and Key Management Protocol
    Initiator SPI: f431f77100000000
    Responder SPI: ba2aa92d8af41601
    Next payload: Identification - Responder (36)
    Version: 2.0
    Exchange type: IKE_AUTH (35)
    Flags: 0x20 (Responder, No higher version, Response)
    Message ID: 0x00000001
    Length: 97
    Payload: Identification - Responder (36)
        Next payload: Extensible Authentication (48)
        0... .... = Critical Bit: Not critical
        .000 0000 = Reserved: 0x00
        Payload length: 51
        ID type: FQDN (2)
        Reserved: 000000
        Identification Data:n3iwf.epc.mncxxx.mccxxx.pub.3gppnetwork.org
    Payload: Extensible Authentication (48)
        Next payload: NONE / No Next Payload  (0)
        0... .... = Critical Bit: Not critical
        .000 0000 = Reserved: 0x00
        Payload length: 18
        Extensible Authentication Protocol
            Code: Request (1)
            Id: 0
            Length: 14
            Type: Expanded Type (254)
            Expanded Type
                EAP-EXT Vendor Id: Unknown (0x28af)
                EAP-EXT Vendor Type: Unknown (0x03)
                Data (2 bytes)
                    **Data: 0100**
                    [Length: 2]
shwireshark's avatar
1
shwireshark
asked 2022-04-06 22:34:37 +0000
grahamb's avatar
23.8k
grahamb
updated 2022-04-07 08:16:27 +0000
edit flag offensive 0 remove flag close merge delete

Comments

add a comment see more comments

1 Answer

0

If you would like to see this added to Wireshark you could either see if you can create the required update yourself and create a merge request on the Wireshark project on GitLab, or you could open an issue on the Wireshark project on GitLab, providing all these details and most importantly an exampe capture file to test with. Then maybe someone will pick this up and implement it for you.

Jaap's avatar
13.7k
Jaap
answered 2022-04-07 09:53:53 +0000
edit flag offensive 0 remove flag delete link

Comments

add a comment see more comments

Your Answer

Please start posting anonymously - your entry will be published after you log in or create a new account. This space is reserved only for answers. If you would like to engage in a discussion, please instead post a comment under the question or an answer that you would like to discuss.

Add Answer