Authentication with eap/mschapv2

Nathan McDavit-Van Fleet nmcdavit at alcor.concordia.ca
Thu Sep 17 17:01:08 CEST 2009


What is the compatibility for clients when you force encryption?

Nathan Van Fleet


> -----Original Message-----
> From: freeradius-users-
> bounces+nmcdavit=alcor.concordia.ca at lists.freeradius.org
> [mailto:freeradius-users-
> bounces+nmcdavit=alcor.concordia.ca at lists.freeradius.org] On Behalf Of
> Ivan Kalik
> Sent: Thursday, September 17, 2009 10:56 AM
> To: FreeRadius users mailing list
> Subject: Re: Authentication with eap/mschapv2
> 
> > I would like to authenticate my Windows XP wireless users with
> freeradius
> > against a AD. Test with the local ntlm_auth against the AD worked fine
> as
> > well radtest with a local user in the users file.
> >
> > I have read in the archive that  "Code 4 is MS-CHAP failure.  It means
> > that the client told the server
> > it didn't like the previous packet"
> >
> > But I have no idea what the server does not like.
> >   mschap {
> >     use_mppe = no
> >     require_encryption = yes
> 
> You have disabled MPPE (Microsoft Point-to-Point Encryption) yet you
> require encryption.
> 
> Ivan Kalik
> Kalik Informatika ISP
> 
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html




More information about the Freeradius-Users mailing list