Discussion:
[PacketFence-users] use_mppe in mschap radius module
Forum
2017-05-04 17:45:31 UTC
Permalink
Hi,

Is there any particular reason that in
/usr/local/pf/raddb/mods-enabled/mschap
use_mppe is set to yes in mschap{}
while in mschap chrooted_mschap{} use_mppe is set to no?

I am using the radius server of packetfence to authenticate vpn users of a
Strongswan IPSEC/IKEv2 gateway by adding a virtual server and client for
handling this gateway.
I reuse the packetfence facilities for querying active directory.
If I set use_mppe = yes in mschap chrooted_mschap{}, my set up works,
otherwise not.

Best,

-- Jaap
Louis Munro
2017-05-04 17:51:49 UTC
Permalink
Post by Forum
Hi,
Is there any particular reason that in
/usr/local/pf/raddb/mods-enabled/mschap
use_mppe is set to yes in mschap{}
while in mschap chrooted_mschap{} use_mppe is set to no?
No. That's an oversight.
What you are doing is fine.

I'll fix this in the next release.

--
Louis Munro
***@inverse.ca <mailto:***@inverse.ca> :: www.inverse.ca <http://www.inverse.ca/>
+1.514.447.4918 x125 :: +1 (866) 353-6153 x125
Inverse inc. :: Leaders behind SOGo (www.sogo.nu <http://www.sogo.nu/>) and PacketFence (www.packetfence.org <http://www.packetfence.org/>)
Loading...