TTLS/MSChapv2 Failure

Alan DeKok aland at deployingradius.com
Fri Apr 6 03:15:34 CEST 2007


Andrew wrote:
> When I am goind TTLS/MSChapv2 with wrong username/password comination, I
> found the FreeRadius server is sending out EAP-Failure message to the
> Security Supplicant. My question is according to MSChapv2 RFC, a
> MSChapv2 Failure packet is also supposed to be sent out. Why the
> MSChapv2
> Failure is not sent?

  Because sending EAP-Failure works just as well.

  Is this just a theoretical question, or is there some real-world
problem with this behavior?

  Alan DeKok.
--
  http://deployingradius.com       - The web site of the book
  http://deployingradius.com/blog/ - The blog



More information about the Freeradius-Users mailing list