On 11/07/13 09:39, sebastian buettrich wrote: > is this expected behaviour, the way anonymous identities are > implemented, Yes. The outer EAP virtual server only sees the anonymous identity. The inner EAP virtual server can see the real identity.