EAP-TTLS w/ files - cert and username issues

Alan DeKok aland at ox.org
Thu Jul 7 19:33:31 CEST 2005

jck-freeradius at southwestern.edu wrote:
> I am experiencing several barriers in getting the FreeRadius 1.0.2
> port to work, in FreeBSD 5.4-RELEASE.  The supplicant is XP SP2,
> requesting through a Cisco 1100 AP NAS.

  SP2 ha sknown interoperability problems with RADIUS servers.  See
Microsoft's web site for a hot fix.

> When I can get everything working with the built-in XP 802.1x
> authentcation client, I would like to enable multiple VLAN support into my
> radius config.  

  Sure.  Just send back tunnel attributes.

> 	Why am I seeing \\username, instead of just username?

  Because that's what the client is sending.

> 	Is there a way to disable the validation of a CA in the built-in
> 	XP supplicant 802.1x authentication dialog? 

  Yes.  Uncheck "validate server sertificate".

  Alan DeKok.

More information about the Freeradius-Users mailing list