Community discussions

MikroTik App
 
ericmule
just joined
Topic Author
Posts: 10
Joined: Fri Mar 30, 2007 6:19 pm

PPP (pass-all wildcard)

Tue Nov 03, 2009 12:10 am

I'd like to setup a PPPoE server with MT that will terminate any username and password. What is the best way about doing this? Will setting up a blank SECRET name make this work or can you add an asterisk as a wildcard?
 
savage
Forum Guru
Forum Guru
Posts: 1264
Joined: Mon Oct 18, 2004 12:07 am
Location: Cape Town, South Africa
Contact:

Re: PPP (pass-all wildcard)

Tue Nov 03, 2009 10:25 am

You can do this with Radius
 
ericmule
just joined
Topic Author
Posts: 10
Joined: Fri Mar 30, 2007 6:19 pm

Re: PPP (pass-all wildcard)

Tue Nov 03, 2009 1:12 pm

Can it be done without Radius?
 
savage
Forum Guru
Forum Guru
Posts: 1264
Joined: Mon Oct 18, 2004 12:07 am
Location: Cape Town, South Africa
Contact:

Re: PPP (pass-all wildcard)

Tue Nov 03, 2009 1:26 pm

Not that I'm aware of. Usermanager nor ppp secrets would have the functionality you desire. You will have to use a rather custom setup of Radius. I understand the requirement for it, but it's not something that's done very often.
 
Smith
Frequent Visitor
Frequent Visitor
Posts: 61
Joined: Mon Dec 19, 2005 1:06 pm

Re: PPP (pass-all wildcard)

Tue Nov 03, 2009 6:37 pm

Even then, radius is unable to send access accept for encrypted connections. Only PAP will go. And, because windows is setup to try PAP only if nothing else is available, majority of connections will not pass. It can be done if Mikrotik is setup for PAP only. And, even then, there will be windows computers setup for required encryption... So, there is no solution for all cases...
 
User avatar
Chupaka
Forum Guru
Forum Guru
Posts: 8712
Joined: Mon Jun 19, 2006 11:15 pm
Location: Minsk, Belarus
Contact:

Re: PPP (pass-all wildcard)

Wed Nov 04, 2009 10:57 pm

yes, mschapv2 requires that both client and server know the password (so that fake server cannot sniff passwords)
 
Smith
Frequent Visitor
Frequent Visitor
Posts: 61
Joined: Mon Dec 19, 2005 1:06 pm

Re: PPP (pass-all wildcard)

Thu Nov 05, 2009 4:50 pm

Exactly, both sides use known password to encrypt data and exchange keys. If they succeed, then password is correct...

Who is online

Users browsing this forum: massinia, Renfrew and 47 guests