Dear Alan:
Thanks for your reply.
Is your mean the cisco don't send the authenticate method to freeradius?
Is it wrong radius config on cisco?
Thank you for your help again.
I see so many answers from you. You are really a good teacher.
interface Virtual-Template2
ip unnumbered FastEthernet0/0
peer default ip address pool pptp-pool
ppp max-bad-auth 4
ppp encrypt mppe auto
ppp authentication ms-chap-v2
ppp ms-chap refuse
radius-server host 211.79.1.25 auth-port 1645 acct-port 1646 key 7 040A59555B
radius-server vsa send authentication
Best Regards,
Bai.
-----Original Message-----
From: Alan DeKok [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, August 31, 2004 11:04 PM
To: [EMAIL PROTECTED]
Subject: Re: MS-CHAP can't work
=?big5?B?QmFpIKXVqXalTg==?= <[EMAIL PROTECTED]> wrote:
> If I try to authenticate to FreeRadius with MS-CHAP,
> it still hard to work after trying long time.
>
> rlm_mschap: No LM/NT password configured. Check authorization.
> modcall[authenticate]: module "mschap" returns invalid
...
> Who can comment what's happen? Thank you very much!!!
You have to tell the server what password to use to authenticate the
user.
Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
This message (and any attachments) may contain information that is confidential, proprietary, privileged or otherwise protected by law. The message is intended solely for the named addressee (or a person responsible for delivering it to the addressee). If you are not the intended reciptient of this message, you are not authorized to read, print, retain, copy or disseminate this message or any part of it. If you have received this message in error, please destroy the message or delete it from your system immediately and notify the sender.
本郵件(及任何附件)[EMAIL PROTECTED](或負責將資料遞交給收件人的人士)使用。如閣下不是本郵件的預定收件人,便無權閱讀、列印、保留、複製或傳佈本郵件或其任何部分。如閣下錯誤地收到本郵件,請立即將之銷毀或從閣下的系統中刪除,並通知寄件人。
<<inline: ttn1.jpg>>