Support of MSCHAPV2 over EAP-TTLS

A.L.M.Buxey at lboro.ac.uk A.L.M.Buxey at lboro.ac.uk
Mon Mar 5 10:21:44 CET 2007


Hi,

>   I am using Freeradius version 1.1.3 for EAP-TTLS testing. I am testing for EAP-TTLS with tunneled authentication type as MSCHAPV2. 
>   I suspect it fails, bcos it sends back Access-Accept instead of sending back the MS-CHAP2-Success encrypted over TLS protocol. please find the trace below.

we've had no problem with EAP-TTLS with MSCHAPv2 - you cant play with
User-Name etc - just ensure you are allowing the reply to be tunneled
in eap.conf.

however, if you try changing reply attributes (eg VLAN) then it doesnt
work - should be fixed in 1.1.5

alan



More information about the Freeradius-Users mailing list