HI All,

 

I have recently upgraded to the latest CVS build of Free-Radius and can’t seem to authenticate MS-CHAP clients connecting to a Cisco Router. As soon as a connection is made I receive the following message:

 

Thread 2 handling request 1, (1 handled so far)

        NAS-IP-Address = x.x.x.x

        NAS-Port = 4

        NAS-Port-Type = Virtual

        User-Name = "test"

        MS-CHAP-Challenge = 0x03128581e11cdf6c

        MS-CHAP-Response = 0x0e01000000000000000000000000000000000000000000000000cd512b3e2117bf410594e3049fadd4d4fee59ecc7e53daa4

        Service-Type = Framed-User

        Framed-Protocol = PPP

modcall: entering group authorize

  modcall[authorize]: module "preprocess" returns ok

  modcall[authorize]: module "suffix" returns ok

    users: Matched mn at 6

  modcall[authorize]: module "files" returns ok

modcall: group authorize returns ok

  rad_check_password:  Found Auth-Type MS-CHAP

auth: type "MS-CHAP"

modcall: entering group authenticate

rlm_mschap: Attribute "MS-CHAP-Challenge" is required for authentication.

  modcall[authenticate]: module "mschap" returns invalid

modcall: group authenticate returns invalid

auth: Failed to validate the user.

 

I’m sure I’m just missing something small, but I can’t for the life of me figure out where the rlm_mschap module wants me to declare an MS-CHAP-Challenge attribute. If any of you have successfully setup freeradius to authenticate MS-CHAP, can you let me know what or where I may be going wrong?

 

Thanks,

 

Matt

 

-----------------------

Matt Nowina

Network Operations

InQuent Technologies

416-645-4633

 

Reply via email to