Ascend Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: (ASCEND) user passwords in radius file



From: s.lux@obi.de <s.lux@obi.de>


>Hello out there,
>
>Is there a way to encrypt the passwords in the radius users file?
>
>I know the possibility of getting the passwords from the unix passwd
file,
>but I have heard that this does not works togehther wit
>CHAP-authentification. Is this true and if so, what is the reason?


CHAP requires a plain-text password to be stored on the radius server,
usually in the users file.  If this password is encrypted, even in the
users file, CHAP won't work.

The solution to this, is to use PAP instead.  It's an easier scheme to
use, as you only need a DEFAULT entry in the users file, and IMHO, it's
more secure than CHAP.

--
    Troy Settle <st@i-Plus.net>
    Network Administrator, iPlus Internet Services
    http://www.i-Plus.net


++ Ascend Users Mailing List ++
To unsubscribe:	send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd:	<http://www.nealis.net/ascend/faq>