[strongSwan] Ikev2 with eap-mschapv2 - is freeradius supported ?

Martin Willi martin at strongswan.org
Fri Dec 12 10:35:18 CET 2014


> If you want to authenticate clients using IKEv1 and Xauth using radius,
> you can use the 'xauth-eap' module to basicly proxy the xauth
> authentication through eap to be able to use the 'eap-radius' module

This is actually not required anymore since 5.1.0, as eap-radius
provides a native xauth backend that uses non-EAP RADIUS to authenticate
username/password, see [1]. xauth-eap is required only if you really
want to talk EAP with RADIUS, for example to use the same RADIUS method
for both IKEv1 and IKEv2 clients.

Regards
Martin

[1]https://wiki.strongswan.org/projects/strongswan/wiki/EapRadius#XAuth



More information about the Users mailing list