HPE Aruba Networking & ProVision-based
1829598 Members
1535 Online
109992 Solutions
New Discussion

HP2530 - Peap-mschapv2 - configuration

 
Classen_Kiefer
New Member

HP2530 - Peap-mschapv2 - configuration

Hello community,

 

I tried to configure RADIUS on HP Procurve 2530 8G Switches.

 

I did the following on the Switch:

- configure RADIUS Server address with PSK

- configure the Authentication for SSH: 

   aaa authentication ssh login peap-mschapv2

   aaa authentication ssh enable peap-mschapv2

   aaa authentication login privilege-mode

 

did the following on the RADIUS-Server (Windows Server 2012 R2 - NPS):

- add RADIUS-Client with the PSK 

- add a new Networpolicy:

   RADIUS-Attribute: Service-Type - Administrative (Value 6)

   authentication method: protect EAP (PEAP) 

   activate MS-CHAP-v2

   activate MS-CHAP

 

The RADIUS-Request failed with the event-ID 6274 and the reason-code 22

Reason: The client could not be authenticated  because the Extensible Authentication Protocol (EAP) Type cannot be processed by the server.

 

If i try PAP-authentication everithing works. But for security reasons this is not an option. In this method, the password is sent in clear text.

 

Can anyone help me to get it working with the Win Server 2012 R2?

 

regards Jonas Kiefer