11-21-2007 09:55 AM - edited 03-05-2019 07:33 PM
Recently configured Microsoft RADIUS to authenticate VTY users for our Cisco devices.The goal was to authenticate using Active directory domain groups. Everthing works great when we specify PAP as authentication method in RAS policy but when we try to authenticate using EAP or other secure methods it does not work. How do we specify aaa authetication to use EAP on switch so this will work?
Thanks in advance.
11-21-2007 11:51 AM
With RADIUS, you can only use PAP or CHAP - EAP is not supported.
11-21-2007 12:34 PM
Thanks for the quick response!
When I set authentication to CHAP on Radius server it fails. Is there a command I need to set on the 3560 switch to force CHAP authentication?
11-22-2007 06:36 AM
I found this link maybe it'll shed some light on this problem.
http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a0080093f4b.shtml
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: