Cisco WLC PEAP/MSCHAPv2 - unnecessary ldap lookups?

A.L.M.Buxey at lboro.ac.uk A.L.M.Buxey at lboro.ac.uk
Thu Jun 18 11:04:06 CEST 2009


Hi,

> You can change default eap type in eap.conf to peap (it's mschav2 now;
> leave mschapv2 in peap section) and loose the first exchange.

...assuming you mean

 eap {

    default_eap_type = peap
  ... ..

   ttls {

    default_eap_type = mschapv2
    ... ..

      }
   
   peap {

    default_eap_type = mschapv2
    ... ..

      }

  ... ...

   }


isnt having   default_eap_type = mschapv2   in the very outer layer (for main
EAP definition) just very wrong anyway?

alan



More information about the Freeradius-Users mailing list