I am attempting to set up a 2800 series router for dial up access. I would be using Windows XP to set up a connection, via the modem, to the router. I am able to reach the router and begin handshaking but when it goes to authenticate my user name and password, it fails. My ACS is showing the error message "Authentication type not supported by External DB." When I remove the "ppp authencation chap pap" line from the config, it connects without authenticating. I have having trouble trying to figure out exactly what the problem is and why won't it authenticate. Any help would be appreciated and let me know if you need anything else.
The message "auth type not supported by external database" means that the protocol you are using for the authentication that takes place between the end client and the NAS (network access server) is not supported by the end database.
If you are using LDAP then Generic Ldap will only support PAP as authentication password protocol . It will not support Chap , Ms - chap and Ms chap v2 and you will get an error message "authentication type not suppoted by external DB " error message .
Thank you very much, this chart has helped. I am able to get it to authenticate using PAP. I had one more question that maybe you can help with. I was going to try to get it to authenticate using ms chap v2. For some reason, that is not working while ms chap v1 is. When I was using chap, I could see in the ACS the failed attempts. While using ms-chap v2, I cannot. Any idea what could be causing this?
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :