pam_radius - Choose Authentication Type

Stefan Paetow Stefan.Paetow at
Mon Jul 11 12:05:45 CEST 2016

>   is there a possibility to force authentication type for a specific NAS?
>   Currently - when having pam_radius configured for SSHD logins there is
>   "User-Password" sent in clear.
>   How could MSCHAP being forced?

PAM is the RADIUS client. If pam_radius_auth does not have an option to specify the RADIUS authentication type, then no, you can't set that. But as always here, if you have code that allows that to happen, by all means contribute :-)

That said, it would be good to be able to tell pam_radius_auth which authentication type to use (and support EAP methods). *makes note to muck about with code again*


Stefan Paetow
Moonshot Industry & Research Liaison Coordinator

t: +44 (0)1235 822 125
gpg: 0x3FCE5142
xmpp: stefanp at
skype: stefan.paetow.janet

Jisc is a registered charity (number 1149740) and a company limited by guarantee which is registered in England under Company No. 5747339, VAT No. GB 197 0632 86. Jisc’s registered office is: One Castlepark, Tower Hill, Bristol, BS2 0JA. T 0203 697 5800.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 496 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <>

More information about the Freeradius-Users mailing list