WPA2/AES + MSCHAPv2 + FreeRADIUS + NO AD/LDAP - Help w/ Local Config

cregester cregester at unitypg.com
Fri Jul 20 23:42:58 CEST 2007


Thank you for the response.

Yes, that is one item I have turned off and on, trying to figure out exactly
which way is better in my case. Most recently, I left it turned on.


cheesegrits wrote:
> 
> Cregester said:
>> fact that it keeps inserting the computer name in front of the username.
>> For
>> example MYCOMPUTER\Bob. This is a problem because I just want usernames
>> to
>> authenticate no matter what computer they access from. Bob should be able
>> to
>> authenticate from a number of PCs.
> 
> Not sure if this is the problem, but did you enable this in the mschap
> module section of radiusd.conf:
> 
>                 # Windows sends us a username in the form of
>                 # DOMAIN\user, but sends the challenge response
>                 # based on only the user portion.  This hack
>                 # corrects for that incorrect behavior.
>                 #
>                 with_ntdomain_hack = yes
> 
>    -- hugh
> 
> 
> - 
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
> 
> 

-- 
View this message in context: http://www.nabble.com/WPA2-AES-%2B-MSCHAPv2-%2B-FreeRADIUS-%2B-NO-AD-LDAP---Help-w--Local-Config-tf4119599.html#a11716553
Sent from the FreeRadius - User mailing list archive at Nabble.com.




More information about the Freeradius-Users mailing list