Hello, I've configured a virtual-template in ASR1004 to authenticate users for internet. ppp authentication method is pap ms-chap ms-chap-v2. If a client want to connect the vpn connection and just checke mark ms-chap-v2 or ms-chap it will not connect although virtual-template has pap ms-chap ms-chap-v2 method.
Also in client vpn connection in security tab uncheck pap and then connect failed with same error(ms-chap and ms-chap-v2 is enabled).
it just shows this:
It was not possible to verify the identity of the server
in real it just connect with pap and ms-chap or ms-chap-v2 don't work.
Configuration of router is:
interface Virtual-Template1
ip unnumbered Loopback200
no ip redirects
no ip unreachables
no ip proxy-arp
ip verify unicast source reachable-via rx
peer default ip address pool AAA-Pool
keepalive 30
ppp disconnect-cause keepalive lost-carrier
ppp authentication ms-chap ms-chap-v2
ppp ipcp dns 4.2.2.4 8.8.8.8
vpdn-group 1
! Default L2TP VPDN group
accept-dialin
protocol l2tp
virtual-template 1
no l2tp tunnel authentication
So what's the problem ?
thanks.
Be quick and careful!