Problems authenticating and assigning DHCP addresses

jck-freeradius at southwestern.edu jck-freeradius at southwestern.edu
Sun Jul 10 01:10:39 CEST 2005


On Sat, Jul 09, 2005 at 07:01:10PM -0400, Zoltan A. Ori wrote:
> On Saturday 09 July 2005 18:36, jck-freeradius at southwestern.edu wrote:
> 
> > We currently do dot-Q trunking of VLANS, and my testing AP has been setup
> > to support the configuration.  Let me know if you are referring to
> > something else.
> >
> 
> That is what I meant.
> 
> >
> > I was under the impression that if my TCP/IP stach was setup for DHCP,
> > and I received an Access-Accept packet from FreeRadius, that my supplicant
> > would go out and request an IP address.  Is this not correct?  It is not
> > working for me.
> 
> It should work that way. Is the DHCP request getting relayed properly? tcpdump 
> or Ethereal will tell you.
> 
> >
> > In addition, I also am wondering why I can only use "Attribute=Password"
> > for successful authentication, and not "Attribute=Crypt-Password". 
> > Crypt-Password works fine when tested through radtest.
> >
> 
> As far as I know, PEAP doesn't support crypt passwords. Try TTLS. 

My problem with TTLS, is that for what I can tell, Microsoft has no
native support for TTLS.  Only PEAP.

If someone can tell me of another method for doing a TLS tunnel, with no
client certificate neeed, and use Crypt passwords, I would be very happy!

> 
> Zoltan ori
> 
> - 
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> 

--johnk 



More information about the Freeradius-Users mailing list