I have configured a Radius server and want to manage my switches (Catalyst 2960-X) with users in AD. It works fine but the only way I can do the authentication is when I choose "unencrypted authentication (PAP,SPAP)" in Radiusgrupp properties.
Now the question is, how can I use a more secure authentication method? For example EAP (PEAP) or EAP-MSCHAP 2?
I searched everywhere but can't find any guide for this.
I have Cisco IOS version 15.2(2)E5 and my configuration on the Cisco switch and Radius are:
aaa authentication login default group radius local
radius server (name_radius_server)
address ipv4 xxx.xxx.xxx.xxx auth-port 1645 acct-port 1646
Thank you in advance.