Proxy PEAP to one Radius Server - EAP-TLS to another Radius Server

Arran Cudbard-Bell a.cudbardb at freeradius.org
Thu Aug 13 14:52:58 CEST 2015


> On 13 Aug 2015, at 08:25, Basile Bluntschli <basile.bluntschli at gmail.com> wrote:
> 
> Hi Alan
> 
> thanks for your fast reply!
> So impossible means, it is not possible with EAP? (nothing to do with
> unlang?)

It's not possible, nothing to do with unlang.

You can however, proxy MSCHAPv2 from the PEAP inner tunnel.  So if you want two RADIUS servers handling different parts of the authentication, that would be how you'd do it in the case of PEAP.

-Arran

Arran Cudbard-Bell <a.cudbardb at freeradius.org>
FreeRADIUS development team

FD31 3077 42EC 7FCD 32FE 5EE2 56CF 27F9 30A8 CAA2

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 872 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20150813/50ce0239/attachment.sig>


More information about the Freeradius-Users mailing list