I'm trying to get password expiry working with an ACS SE, VPN 3000 and AD database for VPN clients.
Radius authentication is working fine, the ACS is setup with the Windows database. When I change the VPN 3000 option for the group to radius with expiry it's not possible to login with the client.
I have followed the instructions from http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2284/products_configuration_example09186a00800946b9.shtml
but I do not get all of these menu options. I am using 22.214.171.124 on the ACS and 4.7.2L on the concentrator.
I have enabled ms-chap 1 and 2 password changes in the ACS Windows authencation config menu.