Page 1 of 1

[Fixed in 1.7.2] RADIUS - CHAP

Posted: Tue Apr 17, 2018 9:41 am
by mrhounet
Hello,

I'm Trying to setup RADIUS Authentication for UNIMUS but I am stuck.

My RADIUS is a Cisco ISE v2.
CHAP is supported but only from internal identities and thus cannot retrieve identities from corporate Directory:
"Cisco ISE supports standard RADIUS CHAP authentication that is based on the RADIUS ChapPassword attribute. Cisco ISE supports RADIUS CHAP authentication only with internal identity stores."
Source :https://www.cisco.com/c/en/us/td/docs/s ... 00000.html

This raises a few questions :
Is it possible to use other authentication protocols?
Is it possible to configure multiple RADIUS servers?
Would it be possible to retrive identities directly from an Active Directory?

Re: RADIUS - CHAP

Posted: Tue Apr 17, 2018 10:33 am
by Tomas
Hi,
Is it possible to use other authentication protocols?
Not yet, but we have a ticket for this:
https://tracker.unimus.net/browse/UN-185

We will push this higher in priority, since it's easy to implement.
Is it possible to configure multiple RADIUS servers?
Also currently not possible.
Would it be possible to retrive identities directly from an Active Directory?
This is on our Roadmap:
https://wiki.unimus.net/display/UNPUB/Roadmap

Re: RADIUS - CHAP

Posted: Tue Apr 17, 2018 11:23 am
by mrhounet
Thank you for your quick answer ;)