Get fail [MS-CHAP2-Response is incorrect] while proxy themschapv2between two Freeradius 2.1.4

tnt at kalik.net tnt at kalik.net
Thu Mar 26 11:05:33 CET 2009


>But actually, all user ID in my home radius server doesn't have "@domain" at
>the end, so how can I proxy the request user ID with "@domain" to my home
>radius and pass the authentication with no "@domain" user ID, and is it
>possible?

Yes, if you are not using EAP. Since you are - you can't rewrite
usernames.

Have users use ntdomain style usernames: domain\username. You can
autheticate those from a database containing only username as user name
(enable ntdomain and nt domain hack).

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list