Win XP with 802.1x PEAP (EAP-MSCHAP V2)

A.L.M.Buxey at lboro.ac.uk A.L.M.Buxey at lboro.ac.uk
Wed Apr 25 19:33:00 CEST 2007


hi,

 rlm_eap_tls: <<< TLS 1.0 Alert [length 0002], fatal access_denied
TLS Alert read:fatal:access denied
rlm_eap_peap: No data inside of the tunnel.
rlm_eap: Handler failed in EAP/peap
rlm_eap: Failed in EAP select

okay. so thats the main issue. were your certificates generated with
the XP extensions? how have you configured the native supplicant?
it doesnt need much configuring.... just disable fast-connect, disable
user guest account, use machine auth (if you're not doing machine)
and click the MSCHPv2 stuff and deselect the 'use windows username/password'
if you cannot use those. then its up to you to ensure the cert is in the
store and you verify or dont verify your radius cert. 

alan



More information about the Freeradius-Users mailing list