Real Time Ascend Maling List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: Re: (ASCEND) MS-CHAP, radius authentication question
- To: ascend-users@max.bungi.com
- Subject: Re: Re: (ASCEND) MS-CHAP, radius authentication question
- From: Joel Wittenberg <joelw@ascend.com>
- Date: Thu, 23 Dec 1999 10:32:40 -0800
- In-Reply-To: <199912230645.WAA01671@max.bungi.com>; from owner-ascend-users-digest@max.bungi.com on Wed, Dec 22, 1999 at 10:45:01PM -0800
- References: <199912230645.WAA01671@max.bungi.com>
- Sender: owner-ascend-users@max.bungi.com
Sigh. A slight proofreading problem in my earlier email:
>
> From: Joel Wittenberg <joelw@ascend.com>
> Date: Tue, 21 Dec 1999 14:42:51 -0800
> Subject: Re: (ASCEND) MS-CHAP, radius authentication question
>
...
> Sample Radius Use:
> 3831 Password = "Ascend-CLID", Service-Type = Dialout-Framed-User,
> Ascend-Require-Auth = Require-Auth,
> Ascend-Auth-Type = Auth-PAP
^
|
----------------------------------+
Obviously this example should read "Auth-CHAP"
>
>
> So this would allow you to specify e.g., Auth-CHAP based on CLID
> authentication, even though the normal Answer setting would have the NAS
> allow the connection to negotiate for MS-CHAP. Note that the service type
> is on the first line (important to prevent someone from dialing in and
> specifying their name/pwd as "3831"/"Ascend-CLID") and that you MUST
> return the Ascend-Require-Auth = Require-Auth if you wish to proceed to
> use name/pwd auth.
>
> Hope this helps,
>
> /joel
>
--
joel wittenberg
InterNetworking Systems
joelw@lucent.com
++ Ascend Users Mailing List ++
To unsubscribe: send unsubscribe to ascend-users-request@bungi.com
To get FAQ'd: <http://www.nealis.net/ascend/faq>