EAP-TTLS with mschapv2 inner authentication issue

2010-08-31 Thread matteo
Hello all, I'm trying to use Freeradius 21.1.9 EAP-TTLS with MSCHAPv2 as inner authentication against an OpenLDAP server with crypt password encryption scheme. the following is my eap.conf relevant part eap { default_eap_type = ttls ttls {

Re: EAP-TTLS with mschapv2 inner authentication issue

2010-08-31 Thread Phil Mayers
On 08/31/2010 10:23 AM, mat...@crs4.it wrote: Hello all, I'm trying to use Freeradius 21.1.9 EAP-TTLS with MSCHAPv2 as inner authentication against an OpenLDAP server with crypt password encryption scheme. That is not possible I'm afraid. MS-CHAP requires access to the NT/LM hashes (or

Re: EAP-TTLS with mschapv2 inner authentication issue

2010-08-31 Thread Fajar A. Nugraha
On Tue, Aug 31, 2010 at 4:23 PM, mat...@crs4.it wrote: Hello all, I'm trying to use Freeradius 21.1.9 EAP-TTLS with MSCHAPv2 as inner authentication against an OpenLDAP server with crypt password encryption scheme. Short answer: you can't. MSCHAPv2 needs clear text password. You can't use