SSH Logins to Cisco Switch. RADIUS/Active Directory

Arran Cudbard-Bell a.cudbardb at freeradius.org
Mon Jan 27 23:30:47 CET 2014


On 27 Jan 2014, at 21:57, Luke Ramsden <lukermsdn at gmail.com> wrote:

> Hi, I am trying to authenticate SSH logins to my Cisco 3750 switches using RADIUS/Active Directory. I think this means I will need the Cisco switches to send an MSCHAPv2 challenge to the RADIUS server? I am struggling to achieve this and wondered if anyone else had come across this and could offer some advice?
> 
> Essentially, all I want is to remotely access the switches on my network using Active Directory credentials. Are there any other/better methods if the above is not possible?

They'll support PAP, in which case you can just use LDAP auth (LDAP Bind) against the AD server. You don't need to use MSCHAPv2.

-Arran

Arran Cudbard-Bell <a.cudbardb at freeradius.org>
FreeRADIUS Development Team

FD31 3077 42EC 7FCD 32FE 5EE2 56CF 27F9 30A8 CAA2

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 881 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20140127/98c7c958/attachment.pgp>


More information about the Freeradius-Users mailing list