cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
721
Views
0
Helpful
3
Replies

IAS PEAP

Peter Nugent
Cisco Employee
Cisco Employee

Configuring PEAP on IAS with autonomous aps and getting the following error on the IAS serevr so I know that the ap is talking to the IAS.

Not sure what I am missing, is there some attribute I need to look at??

An Access-Request message was received from RADIUS client xxx.xxx.x.xxx with a message authenticator attribute that is not valid.

Also Windiws IAS should use port 1812? but I get no messages with port 1812 just port 1645?

Any help appreciated.

1 Accepted Solution

Accepted Solutions

This message usually means that your shared secret is not the same on your AP and the IAS server.

Here's how to configure the ports in IAS:

http://technet.microsoft.com/en-us/library/cc783609%28WS.10%29.aspx

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2

View solution in original post

3 Replies 3

jeromehenry_2
Level 3
Level 3

Hi Pete,

One thing I can think of is the key length between your IAS and AP. Try a shorter or longer key (I would bet that you need a longer one).

IAS listens on both 1812 and 1645, although 1812 is the expected default. You can configure the RADIUS port on your AP, when configuring the RADIUS server IP address.

hth

Jerome

This message usually means that your shared secret is not the same on your AP and the IAS server.

Here's how to configure the ports in IAS:

http://technet.microsoft.com/en-us/library/cc783609%28WS.10%29.aspx

Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2

Jerome / Rob

Thanks so much, the only thing I didnt check was the shared secret, its been a while since I put PEAP on an autonomous AP so thought I was missing something, yep should have checked.

Many thanks

Review Cisco Networking products for a $25 gift card