Community discussions

MUM Europe 2020

Search found 4 matches

by netleak
Wed Mar 15, 2017 8:38 am
Forum: General
Topic: ipsec and dns routing
Replies: 0
Views: 248

ipsec and dns routing

How is it possible to route client's dns requests through server in ipsec protocol? Unlike pptp/l2tp/sstp in ipsec protocol the dns requests are routed through user's own internet instead of ipsec server. I am routing all other traffic from ipsec server and the issue is only with dns requests. In mo...
by netleak
Mon Mar 13, 2017 9:30 am
Forum: General
Topic: Feature Req: IKEv2 server and client
Replies: 291
Views: 82484

Re: Feature Req: IKEv2 server and client

There are several types of EAP MSCHAP implementations (not to mention that they all are drafts and client or server may implement older draft version) MS-EAP-Authentication (EAP/MS-CHAPv2) RFC-draft-kamath-pppext-eap-mschapv2-02.txt PEAPv0/EAP-MSCHAPv2 RFC-draft-dpotter-pppext-eap-mschap-01.txt In ...
by netleak
Sat Feb 18, 2017 11:34 pm
Forum: General
Topic: Feature Req: IKEv2 server and client
Replies: 291
Views: 82484

Re: Feature Req: IKEv2 server and client

even when using username in local-id section, in freeradius logs I see this error and can not login:
(5) mschap: ERROR: MS-CHAP2-Response is incorrect
(5) [mschap] = reject
(5) } # authenticate = reject

any help?
by netleak
Thu Feb 09, 2017 6:06 pm
Forum: General
Topic: IPSec VPN xauth Radius
Replies: 4
Views: 1976

Re: IPSec VPN xauth Radius

There seems to be a bug with "XAuth Use Radius"
I also tested this on 6.39 rc26 and confirm the issue.
the client receives authentication failed as soon as it tries to connect.
in radius server's logs I see a "Accounting Stop" request instead of "Access Request" with a wrong secret.