>Nope. Triple-checked the shared secret. They match. > >Only one RADIUS server in this setup, not separate auth and acct (or did I >misunderstand your suggestion?).
If shared secret is right then we need to figure out, where the problem is. Can you send the radius logs. As Alan suggested can you also verify that Nortel switch that you are using is rfc 2869 compliant for Message Authenticator. -Raghu - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
