How to Initiate EAP-Request Identity

Alan DeKok aland at
Wed May 6 15:07:58 CEST 2020

On May 6, 2020, at 8:30 AM, JAVIER SANDOVAL via Freeradius-Users <freeradius-users at> wrote:
> I have it working, Believe it.

  PCAP files?

> I guess the problem is you think end customer EAP Identity need to change at some time for this use case, but it doesn´t. I likely explain badly the use-case.

  So the EAP Identity doesn't change.

> It is not the case, you have two elements. the VPN server telling initially to the Radius server one EAP-identity that it derived from IKE-ID (as the VPN server does not explicitly ask for the EAP-Identity), and the end customer telling the Radius server its real EAP-Identity after requested by Radius.

  So the EAP Identity does change.


  Alan DeKok.

More information about the Freeradius-Users mailing list