Goodmorning sergejs
My configuration in access point is :
[admin@hot-1] /interface wireless security-profiles> print
0 name="default" mode=none authentication-types="" unicast-ciphers="" group-ciphers="" wpa-pre-shared-key="" wpa2-pre-shared-key=""
supplicant-identity="acs-hot-1" eap-methods=passthrough tls-mode=no-certificates tls-certificate=none static-algo-0=none static-key-0=""
static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" static-algo-3=none static-key-3="" static-transmit-key=key-0
static-sta-private-algo=none static-sta-private-key="" radius-mac-authentication=no radius-mac-accounting=no radius-eap-accounting=no interi
m-update=0s
radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username radius-mac-caching=disabled group-key-update=5m
1 name="strong-psk" mode=dynamic-keys authentication-types=wpa-psk,wpa2-psk unicast-ciphers=tkip,aes-ccm group-ciphers=tkip,aes-ccm
wpa-pre-shared-key="acsh@t2007#$*" wpa2-pre-shared-key="acsh@t2007#$*" supplicant-identity="acs-hot-1" tls-mode=no-certificates tls-certific
ate=none
static-algo-0=none static-key-0="" static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" static-algo-3=none static-key-3=""
static-transmit-key=key-0 static-sta-private-algo=none static-sta-private-key="" radius-mac-authentication=no radius-mac-accounting=no
radius-eap-accounting=no interim-update=0s radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username radius-mac-caching=disabled group
-key-update=5m
2 name="strong-eap" mode=dynamic-keys authentication-types=wpa-eap,wpa2-eap unicast-ciphers=tkip,aes-ccm group-ciphers=tkip,aes-ccm
wpa-pre-shared-key="acsh@t2007#$*" wpa2-pre-shared-key="acsh@t2007#$*" supplicant-identity="hotspot-01" eap-methods=passthrough tls-mode=no-
certificates
tls-certificate=none static-algo-0=none static-key-0="" static-algo-1=none static-key-1="" static-algo-2=none static-key-2="" static-algo-3=
none
static-key-3="" static-transmit-key=key-0 static-sta-private-algo=none static-sta-private-key="" radius-mac-authentication=no radius-mac-acc
ounting=no
radius-eap-accounting=yes interim-update=1m radius-mac-format=XX-XX-XX-XX-XX-XX radius-mac-mode=as-username-and-password radius-mac-caching=
disabled
group-key-update=5m
[admin@hot-1] /interface wireless security-profiles> /radius print
Flags: X - disabled
# SERVICE CALLED-ID DOMAIN ADDRESS SECRET
0 ppp 192.168.0.117 #$238nikos*)
login
hotspot
wireless
dhcp
[admin@hot-1] /interface wireless security-profiles>
I was try with routeros 2.48-49 and with 3.0rc10 -11. The same thing
My IAS server log entry is same oll the time :
User
ccc@domain.com was denied access.
The connection attempt did not match any access policy.
NAS-Port-Type = <not present>
NAP-Port = <not present>
I thing te reason is uknown NAS-Port-Type.
In IAS wireless policy i was put port type Wireless - IEEE 802.11 and Wireless - Other
In other mikrotiks who working like NAS for VPN, there is not problem with IAS.
I don't know how to make attributes for Mikrotik-VSA
Any help appreciated
Thanks nikos