Authenticated even with timed out payment

Hi,
Well I just got going with Authorize.net after going crazy with PayPal inconsistencies.
At my hotspots users are now able to continue even after submitting payment to Authorize.net and not actually making/posting payment.
Usermanager is allowing them to add time through https://myhotspot/user.
They are attempting to make payment but getting “timed out”. Yet somehow the time/credt they’ve “purchased” gets added and off they go.
Any suggestions?
Please tell me (Mikrotik staff or a Mtik user) this is my mis-configuration and this is NOT another UserManager database coding error/glitch/shortcoming/unfinished Mtik job.
I can’t keep going back and forth between this software and Radiusmanager.
timed out.JPG

Not one person experiencing this problem?

Hi,

the same problem we have with paypal. (Checked v5.19)

has anybody ever found any solution for it?

Thanks for answer.

Regards,
paka

I made the following steps:

1.) The user “koelnBIPSk20” hat chosen a new profile in User Manager.
2.) The user “koelnBIPSk20” refuses to pay it by PayPal and as result has not paid.
3.) The user “koelnBIPSk20” tries log in by hotspot and gets the access (The RADIUS server has activated the profile for the user “koelnBIPSk20”)

NOTE: Before my scenario, the user “koelnBIPSk20” had not any active profile und so he could not log in by hotspot.
The RADIUS server allows session although the user “koelnBIPSk20” has not paid this profile by PayPal.
Please see log messages.
I advice all, that uses the Mikrotik RADIUS server to check this problem.

Thank you in advance for any help
Regards,
paka

That is screenshot of log-messages from Access Point
AP_Logs20120816.JPG
That is screenshot of log-messages from RADIUS server
RADIUS_Logs20120816.JPG
That is screenshot of session status from user “koelnBIPSk20”
UM_Error_Timeout_User.JPG

That is screenshot how the user “koelnBIPSk20” hat chosen a new profile in User Manager.
UM_Profile_buy.JPG

This bug is since v4.6 User Manager. I have checked it and received the same result. In my opinion, that is software error.
Everybody should check your system, that is big vulnerability :open_mouth:

Paka, we have fixed this issue in latest RouterOS v6 release. If you are interested to test it, please write to support @ mikrotik.com

Hi Normis,

Thank you so much for responding!
I have just written to support@mikrotik.com. Yes, i want it.
When will the stable version 6 ready?

OMG,
I just now noticed the response to my post.
THANKYOU! You’re brilliant to figure that paka.
You have no idea how much time and $$$$ I’ve wasted and lost with this BUG and ongoing problem.

SO… it’s fixed in 6 ? Normis?

I NEED it if you have it.
I’m so close to throwing in the towel.

email support@mikrotik.com for a pre-release test version

Hello Tchus,

yes, this is fixed in v6. I have tested it.

Very cool paka,
and you’re also running it on x86?

Really really appreciate that. I can’t believe people havn’et showed any concerns about this :confused:
We can’t be the only ones this is happening with.
I’ve been getting users over and over re-authenticating with a “timed out” for @ 1 year now.
I’d have to boot them off after seeing them back on with out paying :confused:
Nice troubleshooting!

so they sent you ver6 beta? or ? they have an RC or Final?
I see he said try the pre-release test version. So …

Hi Normis!

Should’t this be fixed in ver5 as well before development of v5 stops?

After all you call it vX stable on the download page and people that don’t wish to
wait upgrade to v6 or don’t want to pay for v6 if they have for example have an older
RB433AH 512mb or bought a licence for their PC.

After all it’s a bug…

I’m running it only on RB433AH. I have received RC-Version. There are still some bugs. Many entries of table by GUI show wrong value or sometime nothing. For example by column “Start time” or “End time”. After restarting RB i get other value by these entries. Why does the User Manager change these constantly? Therefore i can’t to make out an invoice for my customer through function “generate CSV”. This problem is long-standing, i’ve checked it by stable (v4.6-5.20) and test version too.

yes, it will be fixed in v5 too