Thread: aaa with chap
View Single Post
dtlokee
Village Idiot
Registered Member
 
dtlokee's Avatar
 
Join Date: Mar 2007
Location: NJ
Posts: 2,341

Certifications: CCIE #19991 R+S, CCNA, CCNP, CCIP, CCVP, CCSP, CCSI, MCSE NT4.0, 2000, 2003, + Messaging and Security, MCDBA, MCSD, MCAD
dtlokee has a spectacular aura aboutdtlokee has a spectacular aura aboutdtlokee has a spectacular aura about
Old 07-10-2009, 02:15 PM   #7 (permalink)

ok, the MSCHAP solution will not work for your case, that would only be if you were terminateing a PPP connection on the router like a dial in modem or a serial link with PPP authentication. You most likely have RADIUS configured ("aaa authentication login default group radius" or something like that). RADIUS messages are not encrypted so you would need to look at building a IPSec tunnel but if you have many routers it could become very time consuming. You could also look at a TACACS solution which would be encrypted.



__________________
The only easy day was yesterday!

dtlokee is offline   Reply With Quote