On Sat, Jul 09, 2005 at 07:01:10PM -0400, Zoltan A. Ori wrote: > On Saturday 09 July 2005 18:36, [EMAIL PROTECTED] wrote: > > > We currently do dot-Q trunking of VLANS, and my testing AP has been setup > > to support the configuration. Let me know if you are referring to > > something else. > > > > That is what I meant. > > > > > I was under the impression that if my TCP/IP stach was setup for DHCP, > > and I received an Access-Accept packet from FreeRadius, that my supplicant > > would go out and request an IP address. Is this not correct? It is not > > working for me. > > It should work that way. Is the DHCP request getting relayed properly? > tcpdump > or Ethereal will tell you. > > > > > In addition, I also am wondering why I can only use "Attribute=Password" > > for successful authentication, and not "Attribute=Crypt-Password". > > Crypt-Password works fine when tested through radtest. > > > > As far as I know, PEAP doesn't support crypt passwords. Try TTLS.
My problem with TTLS, is that for what I can tell, Microsoft has no native support for TTLS. Only PEAP. If someone can tell me of another method for doing a TLS tunnel, with no client certificate neeed, and use Crypt passwords, I would be very happy! > > Zoltan ori > > - > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html > --johnk - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

