VS-z Radius proxy EAP not forwarding request to radius server if username
contains @domain.domain
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-07-2019 06:01 AM
Hi,
I have been debugging a certificate issue on Windows7 against NPS Radius back end (using controller as proxy)
I have noticed that when the user uses username@domain.domain the EAP negotiation is dropped with Explicit EAP error and no connection is detected on the Radius server
If i remove the @domain part the connection goes trough successfully.
Is there something i am missing or is this a bug?
I have been debugging a certificate issue on Windows7 against NPS Radius back end (using controller as proxy)
I have noticed that when the user uses username@domain.domain the EAP negotiation is dropped with Explicit EAP error and no connection is detected on the Radius server
If i remove the @domain part the connection goes trough successfully.
Is there something i am missing or is this a bug?
7 REPLIES 7
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-07-2019 06:21 AM
On vSZ console (5.1), go to Diagnostics > RADIUS. You will find the Proxy page. Do you see the Reject counter increases when you use user id with full domain name?
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-07-2019 06:25 AM
It is also worth checking the 5.1 Administrator Guide Page 297, for the Authentication Support Matrix.
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-07-2019 06:26 AM
no i do not. stil at 875 rejects
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
02-07-2019 06:31 AM
yeah i am using 802.1x with NPS Radius trough auth proxy and that is supported.
It works fine from win7 when i change the username sent with the client certificate.
On Win10 that do not work at all.
No requests are hitting the Radius server at all.
It works fine from win7 when i change the username sent with the client certificate.
On Win10 that do not work at all.
No requests are hitting the Radius server at all.

