cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
815
Views
0
Helpful
1
Replies

LEAP/PEAP password change

mdoyle
Level 1
Level 1

Hi, I am trying to figure out how a user will be notified that their LEAP/PEAP password is due to expire and how they can change it.

I would like to age out passwords every 30 days and also force a user to change their administrator assigned password.

Any suggestions as to whether this works or not and if so how?

I'm testing with Cisco 350 PCMCIA cards with NT (CKIP & LEAP) and XP (WPA & LEAP or PEAP), aironet 1200's and user accounts on an ACS 3.2

cheers.

1 Reply 1

towler
Level 1
Level 1

Cisco EAP-Fast will support notification of password expiration to the end-user. LEAP is *extemely* sensitive to dictionary attackes against user passwords that are not complex. EAP-Fast 'fix'es this problem.

See the following links for more information:

www.ietf.org/internet-drafts/draft-cam-winget-eap-fast-00.txt

www.nwfusion.com/news/2004/0212cisietf.html

---Richard

Review Cisco Networking for a $25 gift card