(RADIATOR) Windows 2000, Radiator and Encryption

Hugh Irvine hugh at open.com.au
Thu Jul 25 18:29:05 CDT 2002


Hello Tunde -

As usual, I will need to see a copy of your configuration file (no secrets) 
together with a trace 4 debug showing the iniitial access request, the access 
accept and the subsequent accounting requests. I will also need to know what 
version (and patch level) of Radiator you are running and what client, what 
NAS and what operating system.

regards

Hugh


On Fri, 26 Jul 2002 05:20, Ayotunde Itayemi wrote:
> Hi All, Hi Hugh,
>
> Okay, I am back with my encryption questions :-)
>
> From the accouting request below, I noticed that  MS-MPPE-Encryption-Types
> is set to 0 Anybody know how to set  the value of MS-MPPE-Encryption-Types
> to 1 or 2 on a Windows 2000 server. On the windows 2000 client, it goes as
> far as "registering your computer on remote network" then it immediately
> comes up with "the remote comuter does not support the required encryption
> type" - when I configure the VPN client to require encryption. I noticed
> that Radiator actually send an access-accept packet to the windows RAS and
> also that the windows RAS immediately send another accounting request
> packet back to radiator stating that the user was disconnected at "user's
> request". Any ideas?
>
>        Acct-Output-Packets = 13
>         Acct-Input-Packets = 12
>         Acct-Terminate-Cause = User-Request
>
> The original access-request is below:
>
> Sat May 18 08:51:04 2002: DEBUG: Packet dump:
> *** Received from 80.247.140.4 port 1109 ....
> Code:       Accounting-Request
> Identifier: 3
> Authentic:  <219><145><210><146><203><226>\<12><185>;<248><171>tEO<230>
> Attributes:
>         Acct-Status-Type = Start
>         Acct-Delay-Time = 0
>         NAS-IP-Address = 80.247.140.4
>         Service-Type = Framed-User
>         Framed-Protocol = PPP
>         NAS-Port = 5
>         MS-RAS-Vendor = 311
>         MS-RAS-Version = "MSRASV5.00"
>         NAS-Port-Type = Virtual
>         Tunnel-Type = 0:PPTP
>         Tunnel-Medium-Type = 0:IP
>         Calling-Station-Id = "172.31.1.18"
>         Tunnel-Client-Endpoint = 49:72.31.1.18
>         Acct-Session-Id = "133"
>         User-Name = "kdavid"
>         Framed-IP-Address = 80.247.156.36
>         Framed-MTU = 1500
>         Session-Timeout = 54596
>         Acct-Multi-Session-Id = "3"
>         Acct-Link-Count = 1
>         Event-Timestamp = 1027622370
>         Acct-Authentic = RADIUS
>         MS-MPPE-Encryption-Types = 0

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows 95/98/2000, NT, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
===
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list