Invalid EAP Type with Catalyst 2960G IOS 12.2

Alan DeKok aland at deployingradius.com
Mon Jul 28 20:20:20 CEST 2008


nf-vale wrote:
> The same clients connected to the Cisco Swicth that it's authenticating
> in the same freeradius server can not authenticate because freeradius is
> trying EAP-TLS instead of EAP-PEAP:

  RADIUS doesn't work that way.

  FreeRADIUS *offers* an EAP type when the client starts connecting.
The client *chooses* a different one, if it doesn't like the offer.

  Saying "it doesn't work because of TLS versus PEAP" is equivalent to
saying "the EAP supplicant does not support PEAP".

  The problem you're running into looks a lot like the problem described
in the comments in eap.conf.

  Alan DeKok.



More information about the Freeradius-Users mailing list