[strongSwan] Client to site and freeradius

Клеусов Владимир Сергеевич Kleusov.Vladimir at wildberries.ru
Wed Jun 24 13:00:01 CEST 2020


Hi
Thanks
Does the standard Mac os vpn client work via mschapv2 ? On freeradius I have it disabled and why this is so.

> 24 июня 2020 г., в 12:34, Tobias Brunner <tobias at strongswan.org> написал(а):
> 
> Hi,
> 
>> Is it possible to configure
>> strongswan with this configuration ?If so why ? 
> 
> Yes, strongSwan is not directly involved in the authentication if you
> use the eap-radius plugin.  The EAP messages are exchanged between
> client and RADIUS server, strongSwan only forwards them.  So any EAP
> method can be used as long as client and RADIUS server can both agree on
> one.
> 
>> Then the authentication error and the logs of the radius 
>> login incorrect (EAP: no mutually acceptable types)
> 
> Apparently, the client doesn't support the EAP method the RADIUS server
> proposes.
> 
> Regards,
> Tobias



More information about the Users mailing list