cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1634
Views
0
Helpful
1
Replies

Is the password encrypted during radius authentication?

y.lo
Level 1
Level 1

We are using VPN 3.x clients to connect to a PIX 515 with radius authentication from windows active directory. Is the password encrypted when the user types in the VPN client and get sent to the PIX? Is the vpn tunnel already formed before transferring the password?

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

Yes, user authentication (XAuth) is done as part of Phase 1 and the credentials are sent over the Phase 1 tunnel encrypted.

From the PIX to the AD server (on your internal network) it is sent as a standard Radius packet and the password is encrypted in this also.