Hi,

> >Could someone tell me if it is possible to terminate PEAP on a
> >freeradius server then proxy the request to an NPS server using MSCHAPv2?
> 
> Yes. Simply set "Proxy-To-Realm" in inner-tunnel/authorize, and
> FreeRADIUS will proxy the packets.

..and be aware that any clients that have strict cryptobindings enabled may
not be happy that the authentication was not done by the RADIUS server which
terminated the EAP tunnel.

alan
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to