EAP PEAP-MSCHAPv2 as station unsuccessful

Hi,

I was trying to connect a MikroTik KNOT to a wifi network using EAP PEAP-MSCHAPv2 as station but all tries were unsuccessful. The network/Radius side is out of my control but the admins of the infrastructure were helping me with the issue. We tried with RouterOS 7.9.2 and 7.10.2, configuration is “WPA2 EAP”, a suplicant Identity provided by the server admin, EAP Method “PEAP”, TLS Mode “no certificates” (also tried with “dont verify certificate”), “MSCHAPv2 Username” same as suplicant identity and “MSCHAPv2 password” provided by server admin. It fails in the authentication negociation. As the admins told me aftter chek “windows security events”, there is some missing parameter in the data sent by the Knot, “EAP Type” doesn’t have any value and this generates the event “Network Policy Server denied acces to a user” with the reason “The client and server cannot communicate, because they do not posses a common algorithm”.

I really don’t know what to do next. Someone here faced a similar problem? All kind of help/tip/clue is welcomed.

Same issue here.
I know that the AP only supports TLSv1.2.
Unfortunately MT doesn’t support PEAP TLSv1.2.
I hope someone from Mikrotik responds to this post and gives us an update on whether they want to include the TLS version option in the Wifi security or not.

It’s been some months since this post, and I have just encountered the same issue with v7.11.2. Any clue on how to solve it? Thanks.