[vpn-help] RADIUS with Expiry Support

Michael-Curran (Canberra) Michael.Curran at austrade.gov.au
Sun Jan 31 16:32:26 CST 2010


Dear vpn-help community,

I'm currently assessing the ShrewSoft  VPN client as a replacement for the Cisco IPSec VPN client on 64-bit Windows.  I'm connecting to a Cisco VPN 3000 concentrator from a Windows 7 x64 host.  In our current configuration we're using extended authentication (PSK + XAuth) with RADIUS validating the "Xauth" part.

I can connect and authenticate fine with this configuration using the ShrewSoft client, however my problem arises when the users' password expires.  Using the Cisco or NCP clients I get challenged to change my expired password as part of the XAuth process.  Using the ShrewSoft client I simply get an authentication failure, and the server tells me that the password change attempt was deferred.

Does anyone know if it is possible for the ShrewSoft client to perform an interactive password change for an expired password when using PSK + XAuth?

Regards,

Michael

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20100201/1962b7d0/attachment-0001.html>


More information about the vpn-help mailing list