802.1x with mschap-radius-ldap with ssha-1 passwords

Alan DeKok aland at nitros9.org
Tue Jul 18 00:50:36 CEST 2006


"Matt Ashfield" <mda at unb.ca> wrote:
> I was afraid you'd say that. What would you suggest as a workaround for this
> problem? Could I do EAP-TTLS using the securew2 client instead?

  Yes.

>  Or am I better off creating a 2nd password attribute on the LDAP
> directory that is maybe encoded as an NT-Password attribute or
> something like that.

  That works once everyone changes their password.

  Alan DeKok.



More information about the Freeradius-Users mailing list