Re: My PPTP+802.1X+MS-CHAP+EAP+OpenLDAP+MySQL Project.

This is a discussion on Re: My PPTP+802.1X+MS-CHAP+EAP+OpenLDAP+MySQL Project. within the FreeRADIUS Users forums, part of the Networking and Network Related category; Evan Vittitow wrote: > I want to secure my Wireless Access points using 802.1X and PEAP, or > EAP-...


Go Back   Usenet Forums > Networking and Network Related > FreeRADIUS Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-11-2007
Phil Mayers
 
Posts: n/a
Default Re: My PPTP+802.1X+MS-CHAP+EAP+OpenLDAP+MySQL Project.

Evan Vittitow wrote:

> I want to secure my Wireless Access points using 802.1X and PEAP, or
> EAP-TLS that are operated by my Cisco Aironet 340. I'm not interested in
> encrypting traffic. I have UDP Protocols like Quake 3 that are degraded


You can't use EAP on any wireless point that I know of *without*
encrypting the data. It wouldn't make any sense.

Anyway...

> by WPA, WEP and IPSec. IPSec may get implemented in due time, but for
> now, thats not on the agenda. My current issue is securing the APs from
> unauthorized access.
>
> My Progess so far:
>
> The issue with the VPNs is that even through Client Side PPP uses
> MS-CHAP, FreeRadius is causing pppd to think its authenticating normal CHAP.
>
> Jan 9 03:09:00 kurama pppd[12373]: Peer User failed CHAP authentication
> rlm_mschap: Found LM-Password
> rlm_mschap: Found NT-Password
> rlm_mschap: No MS-CHAP-Challenge in the request


This is a pppd configuration issue. You need (probably) the following in
/etc/ppp/options.pptpd:

-chap
-mschap
+mschap-v2
require-mppe
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 11:20 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0