adding mschap to an existing ttls/pap setup
bgold at simons-rock.edu
Thu Apr 12 17:49:25 CEST 2012
We currently have an existing freeradius setup using eap-ttls/pap with an openldap backend. Up until now, our userPassword has
always been SHA encoded. I've been working to add sambaNTPassword hashes so that we can use either eap-ttls/mschap or peap/mschap.
I've got the nt hashes set, but I'm having some difficulty getting freeradius to successfully authenticate.
Output from "radtest -t mschap username password localhost 0 secret": http://pastebin.com/FeiwwhzE
output from "radtest -t pap username password localhost 0 secret": http://pastebin.com/tvZXqJCm
More information about the Freeradius-Users