MS-CHAP for Radius Authentication of Catalyst / Nexus rather than unsafe PAP
we have noticed on our FreeRADIUS server that the Cisco switches still use the unsafe PAP authentication method where the password between the switch and the radius server is transmitted accross the LAN in cleartext.
Is there any way to tell the Catalyst Switches such as 2960S, 2960X, 3850, 3650 or Nexus 3K,5K,6K,7K to use MS-CHAP instead of PAP ?
If not are there any plans to implement this in the future ?
Re: MS-CHAP for Radius Authentication of Catalyst / Nexus rather than unsafe PAP
but as far as I understand the document behind the link you have kindly provided this only refers to PPP authentication on routers (prerequisite in the doc you provided is: Configure the interface for PPP encapsulation).
We need MS-CHAP for authenticating admin users on switches who try to connect via SSH.
Our question is if and how that's possible on Catalyst and Nexus switches (not PPP routers) ?
You have an extra week of fun! Capture the Flag has been extended through July 17. Register using the links below.
As a part of Cisco Live US auxiliary programs, we invite you to learn new technologies and obtain hands-on experience in a...
Hi,I'm trying to setup a cellular connection on my Cisco 1111 router.The interface is UP and it gets a private IPv4 and a public IPv6 address.If I try to send something on IPv4 through the cellular interface it works fine.But there seems to be an issue wi...
For an offline or printed copy of this document, simply choose ⋮ Options > Printer Friendly Page. You may then Print, Print to PDF or copy and paste to any other document format you like.
Is your WAN ready for a multicloud transformation?
Network Insider Live Webinar
Tuesday, July 21, 2020 10:00 am Pacific Time (San Francisco, GMT-08:00)
This webinar will show how convergence between SD-WAN and Security is emerging as important new SASE a...