PEAP/MSCHAPv2 bounded to a particular MAC Address

Matthew Newton mcn4 at leicester.ac.uk
Thu Jan 30 12:14:16 CET 2014


Hi,

On Thu, Jan 30, 2014 at 10:54:10AM +0100, Marco Gaiarin wrote:
> > > 	username1      User-Password := "password1", MS-CHAP-Use-NTLM-Auth := 0, Expiration := "Apr 29 2010 18:00:00"
> >   Well, that's wrong.
> 
> ...but it works. ;-)

It does, but it won't in version 3. There have been warnings in
version 2 for years to give people notice to change it.

> >   There's a reason it's in the FAQ (and README, "man" page, and daily on
> > this list).
> >   If you're not going to bother following the documentation, then it's
> > no surprise you can't get it to work.
> 
> i'm very happy to know that there's a reason because does not work (and
> so, i suppose a solution to make it work) but really i'm now able to
> even see them on «the FAQ (and README, "man" page, and daily on this
> list)». Sorry.
> 
> Can you (or, some other list member) provide me at least some hint? I'm
> only asking that.

Daily reminder:

  - Run 'radiusd -X'
  - do the auth that you have problems with
  - post the entire debug output to the list.

Without the debug output (including the packet), nobody can see
what's happening.

Don't add any extra -x type options; they obscure the useful
stuff.

Hope that helps :)

Matthew



-- 
Matthew Newton, Ph.D. <mcn4 at le.ac.uk>

Systems Specialist, Infrastructure Services,
I.T. Services, University of Leicester, Leicester LE1 7RH, United Kingdom

For IT help contact helpdesk extn. 2253, <ithelp at le.ac.uk>


More information about the Freeradius-Users mailing list