Title: RE: MS-CHAP Support

Hi Alan,

Thanks for your reply.  I think you guys have a great piece of software and apparently so do some of our customers.

Right now I can use PAP or CHAP to authenticate a RADIUS user without changing the configuration on the RADIUS server.  Since "Auth-Type := Local" works for either, I expected it to work the same way for MS-CHAP.  That's the way it works on the other RADIUS server we have.

Thanks,

Phillip Soltan 

-----Original Message-----
From: Alan DeKok [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, July 27, 2004 2:42 PM
To: [EMAIL PROTECTED]
Subject: Re: MS-CHAP Support

Phillip Soltan <[EMAIL PROTECTED]> wrote:
> I was wondering if you were planning to support MS-CHAP v1 and MS-CHAP v2
> for users who are set to "Auth-Type := Local".

  No.  Set "Auth-Type := MSCHAP", which is what the server does
automatically when it sees a request containing MS-CHAP.  This is the
default configuration that the server ships with.

  Can you explain why you think "Local" should do MSCHAP authentication?

> If I specifically set a user to "Auth-Type := MS-CHAP" then the server
> returns an Access-Accept.

  Yes.. that's the way it's supposed to work.

  Why would it behave any different?

  Alan DeKok.


Reply via email to