Terminate EAP-PEAP client connection at FreeRadius Proxy and proxy(forward) request as PAP

Ryan majereryan at gmail.com
Sat Mar 22 13:27:42 CET 2008


Sorry for being not specific enough. Was thinking of understanding how
it works and then figure out the configuration myself.

Basically I need to terminate a request that uses EAP/PEAP on the main
radius and proxy the request to an inner radius server for
authentication using PAP. What will I need to configure in order to
get it forwarded correctly?

Thanks/Regards,
Ryan

Ryan wrote:
> Just read through some of the messages available on proxy tunneling.
> I'm currently using 2.0.2 and read through the examples on inner
> tunnel which seems to be able to do what I need. Can someone help by
> providing more details on how it actually works?

 PEAP authentication is really SSL + authentication inside of the SSL
tunnel.  So... the server handles authentication "outside" of the
tunnel, and authentication "inside" of the tunnel as independent
authentications.

 Do you have *specific* questions?  Asking "how does it work" is rather
open-ended.

 Alan DeKok.



More information about the Freeradius-Users mailing list