<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: authentication type is pap in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/authentication-type-is-pap/m-p/414961#M428758</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think I found the answer to part of my question in the CCSP SECUR text, "If you are using the Windows NT or Windows 2000 user database to authenticate users, you must use PAP password encryption"  Further down, "If you are using the Cisco Secure ACS for Windows users databse for authentication, you can use either PAP or CHAP."&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 27 Jul 2005 13:24:18 GMT</pubDate>
    <dc:creator>WILLIAM STEGMAN</dc:creator>
    <dc:date>2005-07-27T13:24:18Z</dc:date>
    <item>
      <title>authentication type is pap</title>
      <link>https://community.cisco.com/t5/network-access-control/authentication-type-is-pap/m-p/414960#M428752</link>
      <description>&lt;P&gt;I have a switch setup to use radius. I have the aaa-new model list applied to my console and telnet ports, but they only work with pap. If I try chap in my remote access policy, login is not allowed, and the radius server's event viewer reads, incorrect authentication type.  If I allow pap at the remote access policy, it works fine.  I don't know how to change the authentication protocol used on the console and telnet ports. Can you change it? I know you can change it on serial interfaces with ppp.  Isn't telnet clear text only? If so, what good is radius when trying to account for who has been accessing, and who is allowed to access the cisco equipment via telnet or the console? I don't want active dir domain account's passwords being sent clear text. Is there a better alternative? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:14:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/authentication-type-is-pap/m-p/414960#M428752</guid>
      <dc:creator>WILLIAM STEGMAN</dc:creator>
      <dc:date>2019-03-10T21:14:47Z</dc:date>
    </item>
    <item>
      <title>Re: authentication type is pap</title>
      <link>https://community.cisco.com/t5/network-access-control/authentication-type-is-pap/m-p/414961#M428758</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think I found the answer to part of my question in the CCSP SECUR text, "If you are using the Windows NT or Windows 2000 user database to authenticate users, you must use PAP password encryption"  Further down, "If you are using the Cisco Secure ACS for Windows users databse for authentication, you can use either PAP or CHAP."&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 27 Jul 2005 13:24:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/authentication-type-is-pap/m-p/414961#M428758</guid>
      <dc:creator>WILLIAM STEGMAN</dc:creator>
      <dc:date>2005-07-27T13:24:18Z</dc:date>
    </item>
  </channel>
</rss>

