VPN - CHAP authentication failed

I am currently running a Mac mini server with 10.8.2 installed. I can connect to my VPN when connected to the internal network with the same credentials I'm trying when connecting externally, however I am not able to connect externally. The VPN server log says...
Wed Jan  9 19:05:45 2013 : PPTP incoming call in progress from 'XXX.XXX.XXX.XXX'...Wed Jan  9 19:05:45 2013 : PPTP connection established.
Wed Jan  9 19:05:45 2013 : using link 0
Wed Jan  9 19:05:45 2013 : Using interface ppp0
Wed Jan  9 19:05:45 2013 : Connect: ppp0 <--> socket[34:17]
Wed Jan  9 19:05:45 2013 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x41729571> <pcomp> <accomp>]
Wed Jan  9 19:05:45 2013 : rcvd [LCP ConfReq id=0x1 <mru 1400> <asyncmap 0x0> <magic 0x76af3698> <pcomp> <accomp>]
Wed Jan  9 19:05:45 2013 : lcp_reqci: returning CONFACK.
Wed Jan  9 19:05:45 2013 : sent [LCP ConfAck id=0x1 <mru 1400> <asyncmap 0x0> <magic 0x76af3698> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x41729571> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : rcvd [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x41729571> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : sent [LCP EchoReq id=0x0 magic=0x41729571]
Wed Jan  9 19:05:48 2013 : sent [CHAP Challenge id=0xcc <1b0470764c2477634532244f7056405b>, name = "server.robertsteeter.private"]
Wed Jan  9 19:05:48 2013 : rcvd [LCP ConfReq id=0x2 <mru 1400> <asyncmap 0x0> <magic 0x5fbceae0> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : sent [LCP ConfReq id=0x2 <asyncmap 0x0> <auth chap MS-v2> <magic 0x772dcec9> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : lcp_reqci: returning CONFACK.
Wed Jan  9 19:05:48 2013 : sent [LCP ConfAck id=0x2 <mru 1400> <asyncmap 0x0> <magic 0x5fbceae0> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : rcvd [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x41729571> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : rcvd [LCP ConfAck id=0x2 <asyncmap 0x0> <auth chap MS-v2> <magic 0x772dcec9> <pcomp> <accomp>]
Wed Jan  9 19:05:48 2013 : sent [LCP EchoReq id=0x0 magic=0x772dcec9]
Wed Jan  9 19:05:48 2013 : sent [CHAP Challenge id=0x6a <65334e292e400860457a3e710278142e>, name = "server.robertsteeter.private"]
Wed Jan  9 19:05:48 2013 : rcvd [LCP EchoRep id=0x0 magic=0x5fbceae0]
Wed Jan  9 19:05:48 2013 : rcvd [CHAP Response id=0x6a <3c2c0bb90568f62f5ada84294038e828000000000000000032bf450620bf278e54e8d70b5ed48a 4a5567f528df9194bd00>, name = "matt"]
Wed Jan  9 19:05:48 2013 : DSAuth plugin: unsupported authen authority: recved ShadowHash;HASHLIST:<SMB-NT,CRAM-MD5,RECOVERABLE,SALTED-SHA512-PBKDF2>, want ApplePasswordServer
Wed Jan  9 19:05:48 2013 : DSAuth plugin: MPPE key required, but its retrieval failed.
Wed Jan  9 19:05:48 2013 : sent [CHAP Failure id=0x6a "S=D43D9FBA673744184953601DBB181A5E9B2FF9C9 M=Access granted"]
Wed Jan  9 19:05:48 2013 : CHAP peer authentication failed for matt
Wed Jan  9 19:05:48 2013 : sent [LCP TermReq id=0x3 "Authentication failed"]
Wed Jan  9 19:05:48 2013 : Connection terminated.
Wed Jan  9 19:05:48 2013 : PPTP disconnecting...
Wed Jan  9 19:05:48 2013 : PPTP disconnected
2013-01-09 19:05:48 EST    --> Client with address = 192.168.100.241 has hungup
Not sure what the issue is, however I'm sure I have the username/password and shared secret all correct since I can connect internally. Any suggestions?

I have a similar problem:
OS X Server 10.3.9 running on a G3; clients running OS X 10.4.8.
I used Server Admin to set up the server with L2TP and set the shared secret[1]; I used Internet Connect to try to get a client to connect to the server. The result is always the same: The client says "Authentication Failed" and the server's logs record the conversation (Here's the relevant part):
...Tue Jan 16 15:55:08 2007 : sent [CHAP Challenge id=0x1 <c9af9d6375c13e5657d49c44c6ab8259>, name = "inside"]
Tue Jan 16 15:55:08 2007 : rcvd [LCP EchoReq id=0x0 magic=0x9101c22f]
Tue Jan 16 15:55:08 2007 : sent [LCP EchoRep id=0x0 magic=0xf01aa2]
Tue Jan 16 15:55:08 2007 : rcvd [LCP EchoRep id=0x0 magic=0x9101c22f]
Tue Jan 16 15:55:08 2007 : rcvd [CHAP Response id=0x1 <f27c5a611e1e9cf68c17d04d37448b6d00000000000000000f035bba35b5a714589e7292c1fba0 78d57fb3640b62a08e00>, name = "timberwoof"]
Tue Jan 16 15:55:08 2007 : sent [CHAP Failure id=0x1 "E=691 R=1 C=C9AF9D6375C13E5657D49C44C6AB8259 V=0 M=Access denied."]
Tue Jan 16 15:55:08 2007 : CHAP peer authentication failed for remote host timberwoof
Tue Jan 16 15:55:08 2007 : sent [LCP TermReq id=0x2 "Authentication failed"]
Tue Jan 16 15:55:08 2007 : rcvd [LCP TermReq id=0x2 "Failed to authenticate ourselves to peer"]
The user 'timberwoof' exists on the server. I tried changing password type to Advanced, but there's a catch-22 situtation: no user is set up with Advanced password, and it can only be changed to that by a user using Advanced password.
[1] Has anyone else noticed that the dialog box for setting this in Server Admin 10.4.7 is broken? It always forgets the shared secret and then complains that none has been entered.

Similar Messages

  • VPN (PPTP) Authentication Failed

    Hi,
    I am trying to Connect to my work network. Work uses a Secure Computing SG560.
    The setup at work on the SG560 is as follows:
    PPTP VPN Server
    Authentication Scheme: Weakly Encrypted Authentication (CHAP)
    Encryption: Strong Encryption (MPPE 128 Bit)
    On my mac, I have setup a new VPN (PPTP) Connection
    Given it the Internet Address
    My Account Name
    Encryption Auto (And tried Maximum)
    Authentication Settings is password with my password set on the SG560.
    Pressing Connection I get a prompt saying Authentication failed
    In my console I have this (obviously some settings omitted)
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] pppd 2.4.2 (Apple version 412.3) started by wt9bind, uid 501
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] PPTP connecting to server 'x.x.x.x' (x.x.x.x)...
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] PPTP connection established.
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] Connect: ppp0 <--> socket[34:17]
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] MS-CHAP authentication failed:
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] Connection terminated.
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] PPTP disconnecting...
    6/12/10 06/12/10 - 9:06:48 PM pppd[1825] PPTP disconnected
    The only way to get this working is to change the Authentication Scheme in the SG560 to No Auth
    If I do this, it connects perfectly with the following:
    6/12/10 06/12/10 - 9:09:15 PM kernel utunctlconnect: creating interface utun0
    6/12/10 06/12/10 - 9:09:16 PM pppd[1839] pppd 2.4.2 (Apple version 412.3) started by wt9bind, uid 501
    6/12/10 06/12/10 - 9:09:16 PM pppd[1839] PPTP connecting to server 'x.x.x.x' (x.x.x.x)...
    6/12/10 06/12/10 - 9:09:16 PM pppd[1839] PPTP connection established.
    6/12/10 06/12/10 - 9:09:16 PM pppd[1839] Connect: ppp0 <--> socket[34:17]
    6/12/10 06/12/10 - 9:09:17 PM pppd[1839] local IP address x.x.x.x
    6/12/10 06/12/10 - 9:09:17 PM pppd[1839] remote IP address x.x.x.x
    6/12/10 06/12/10 - 9:09:17 PM pppd[1839] primary DNS address x.x.x.x
    6/12/10 06/12/10 - 9:09:17 PM pppd[1839] secondary DNS address x.x.x.x
    6/12/10 06/12/10 - 9:09:17 PM configd[14] network configuration changed.
    6/12/10 06/12/10 - 9:09:17 PM pppd[1839] pptpwaitinput: Address added. previous interface setting (name: en0, address: 192.168.1.9), current interface setting (name: ppp0, family: PPP, address: x.x.x.x, subnet: 255.255.0.0, destination: x.x.x.x).
    6/12/10 06/12/10 - 9:09:17 PM configd[14] network configuration changed.
    6/12/10 06/12/10 - 9:09:17 PM vmnet-bridge[234] Dynamic store changed
    6/12/10 06/12/10 - 9:09:17 PM vmnet-bridge[234] Could not retrieve media for interface ppp0: Operation not supported on socket.
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: VMNetDisconnect called for port 0xf8f9f00
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: Invalidating peer info for hub: 0, port: 0
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: bridge-en0: filter detached
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: bridge-en0: down
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: bridge-en0: detached
    6/12/10 06/12/10 - 9:09:17 PM kernel vmnet: Freeing hub at 0xe45a000.
    Now obviously running no auth is totally unacceptable.
    The options in the SG560 for Authentication Scheme is:
    PAP
    CHAP
    MS-CHAP
    MS-CHAPV2
    Required Encryption:
    No Encryption
    Basic Encryption MPPE 40Bit
    Strong Encryption MPPE 128Bit
    Can somebody tell me why my client on my mac will not connect as soon as the encryption level is changed on the SG560? It works perfectly from Windows.
    Thanks

    Can anybody help me on this?

  • VPN CHAP authentication is extremely slow

    When a client connects to VPN server, its connection usually time-outs. Investigating the logs show that CHAP authentication takes almost 2 minutes to complete. No wonder that the clients time-out. Does anybody have any idea why this happens? The log looks like this:
    Fri Feb 15 14:44:57 2008 : rcvd [CHAP Response id=0xae <16d8af347907c328c8f5b372e5189d6700000000000000001ff63e1d9cb760c3ac7d3546075970 e6dcf77da48b6fdc4500>, name = "andrus"]
    Fri Feb 15 14:46:47 2008 : sent [CHAP Success id=0xae "S=F4AFFA3E4908A8963BE2F7E8F2572AF91030E0B3 M=Access granted"]
    There is 1:50 delay between lines 1 and 2.

    I don't remember exactly what I did, because I tried out so many things, but I can summarize something.
    It was my first OS X server setup and considering Apple's legendary ease of use, I didn't plan much ahead. Turns out that although it looks easy, you can end up with a bad configuration 90% of the time and this is really easy.
    My planning was bad in a lot of ways.
    1) I configured both network interfaces at first assigning static IP-s. Turns out that when I later disabled the use of the second interface because I didn't need it, the configuration records about this interface were left in many places in the system, notably the Kerberos and Open Directory.
    2) I setup a local DNS server and used DNS domain name ".local" - a very bad idea, because it turned out that Bonjour (mDNS) uses that same name causing delays and conflicts. The idea was to setup the .local domain on the public IP addresses at first and later move over to private address use (192.168.x.x). Whenever you want to setup your own DNS on that same server and serve addresses that include your server's IP, then you absolutely MUST setup the DNS temporarily on another computer. After you have installed OS X you are free to migrate it over to it. You have to have all DNS records in place before you start the install, because Kerberos will be setu using the nane obtained using reverse lookup.
    I think the second mistake caused the most of the trouble, but stray IP address records were also a nuisance. In the end I made a clean install with 10.4.11 instead of Leopard.

  • Dead broadband - LCP down, CHAP authentication fai...

    Hi
    I am unable to connect to my BT broadband since last night.  I've tried multiple routers, and have confirmed that I have entered my username correctly (without the @btinternet.com bit on the end).
    My routers tell me that LCP is down and CHAP authentication failed, which normally means a wrong username/password combination - but that's definitely not being entered incorrectly.  Trust me, I've done it a hundred times.
    I've also performed hardware resets on my router.  I *can* get through to the test page if I give my username as bt_test@startup_domain but nothing else works.
    What number do i phone at BT to get them to look into this?  As I feel there must be something wrong at their end.
    I only run Macs, so can't try the Broadband Test diagnostic wotsit.
    Many thanks!!

    I agree with banz as to the username, and there's no password.
    If you are getting an ADSL sync (i.e. it's showing a connection speed), but you are unable to connect, then this could be a problem at the exchange. I had this happen to me a few weeks ago. It turned out that someone had been working at the exchange and switched my line to a different circuit when they shouldn't have done.

  • Authentication Failed to 2008 NPS from Cisco IOS VPN

    I'm trying to authenticate VPN connections to a Windows 2008 NPS Radius server.
    Local authentication works fine.
    Here are cisco configs:
    aaa new-model
    aaa authentication login default local
    aaa authentication login VPNauth group radius local
    aaa authorization network VPNgroup local
    aaa session-id common
    ip radius source-interface Loopback0
    radius-server host x.x.x.x auth-port 1645 acct-port 1646 key 7 xxxx
    crypto map VPNMAP client authentication list VPNauth
    crypto map VPNMAP isakmp authorization list VPNgroup
    crypto map VPNMAP client configuration address respond
    crypto map VPNMAP 10 ipsec-isakmp dynamic dynmap
    ... other crypto commands
    This is the section of the log from NPS:
    Authentication Details:
        Connection Request Policy Name:    VPN
        Network Policy Name:        -
        Authentication Provider:        Windows
        Authentication Server:        x.x.x.x
        Authentication Type:        PAP
        EAP Type:            -
        Account Session Identifier:        -
        Logging Results:            Accounting information was written to the local log file.
        Reason Code:            16
        Reason:                Authentication failed due to a user credentials mismatch. Either the user name provided does not map to an existing user account or the password was incorrect.
    I do have PAP enabled on the Network/Connection Request Policies...
    I'm stuck
    Please help

    Can you run a "teat aaa " command to see if the user can be authenticated successfully?
    I think this might be a configuration issue on NPS. You can google it. Here is one I found, refer to "irishHam" post.
    http://social.technet.microsoft.com/Forums/en-US/winserverNIS/thread/bfbbbae4-a280-4b3f-b214-02867b7d33e3

  • Problems with PPTP VPN server authentication - Could not retrieve key agent account information

    Errr so far switching to a mac based server has been a mess. I have had it with permission issues!!
    Here is my latest problem. After rebuilding the server several times my VPN clients can't connect. Every other time it has been fine but for some reason its just not working. I did recreate the vpn from a back up. I am not sure if that has anything to do with it. Anyway below is the error I am getting. Anyone have any idea what is causing it? You have all already been so helpful. Thank you very much!
    DSAuth plugin: Could not retrieve key agent account information.
    DSAuth plugin: MPPE key required, but its retrieval failed.
    CHAP peer authentication failed for joel

    Thank you for your help John. Before I could even employ your suggestion the server crashed. I don't understand why I am constantly dealing with these issues. I cloned the install to a new HDD and then did a reinstall. That fixed VPN, so far so good. But talk to me next week, something else will happen I'm sure.

  • Authentication Failed using K2 SmartObjects as Data source

    I have an issue with Visual Studio 2010 and the K2 Smart Objects Data source. I continue to get Authentication Failed: SEC_E_LOGON_DENIED. I log into a corporate domain and then VPN into another domain where the K2 database and SQL Server are located.
    After looking at the Windows logs it is apparent that the credentials being used are the first ones(corporate domain) and not the ones that I specified when using the Data source option for my application. I specify the correct domain/userid, port number and
    password. Anyone have any suggestions?   

    Hi BBVillarreal,
    Since it is related to K2 Smart Objects, I’m afraid that it is really out of support range of VS IDE forum, but you can try ask this question at the forum about the K2 smart objects for better support.
    I’m not very sure that the real forum, but I found some sites which are related to it, maybe you could get the correct forum for it.
    http://www.k2underground.com/forums/t/15584.aspx
    http://www.k2.com/
    http://getk2.org/community/New-to-K2-Ask-here-first/132012-K2-Database-Structure
    Best Regards,
    We are trying to better understand customer views on social support experience, so your participation in this interview project would be greatly appreciated if you have time. Thanks for helping make community forums a great place.
    Click
    HERE to participate the survey.

  • 802.1x authentication fails

    Setup: two 5500 (v6.0.188.0, mix of 1131 and 1141 AP`s
    Laptops running fine for random number of weeks suddenly can´t connect to the wireless network. The output from Client troubleshoot shows:
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Controller association request message received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Association request received from a client has an invalid RSN IE.(One reason could be mismatch in WPA2 algorithm).
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received reassociation request from client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    The wlan to which client is connecting requires 802 1x authentication.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Client moved to associated state successfully.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received EAP Response from the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received EAPOL start message from client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received EAP Response from the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    EAP response from client to AP received.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Radius packet received. Access-Challenge received from RADIUS server 10.1.1.81, receiveId = 10
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Received Access-Challenge from the RADIUS server for the client.
    05/07/2010 07:03:14 CEST
    INFO
    10.1.1.101
    Sending EAP request to client from radius server.
    05/07/2010 07:03:44 CEST
    ERROR
    10.1.1.101
    Retransmitting EAP-ID request to client,retransmission timer expired.
    05/07/2010 07:04:14 CEST
    ERROR
    10.1.1.101
    Retransmitting EAP-ID request to client,retransmission timer expired.
    05/07/2010 07:04:44 CEST
    ERROR
    10.1.1.101
    Authentication failed for client as EAP ID request from AP reached maxmium retransmissions.
    05/07/2010 07:04:44 CEST
    ERROR
    10.1.1.101
    De-authentication sent to client. slot 0 (claller 1x_ptsm.c:467)
    05/07/2010 07:04:44 CEST
    ERROR
    10.1.1.101
    05/07/2010 07:04:44 CEST
    ERROR
    10.1.1.101
    EAPOL-key is invalid, scheduling client for deletion.

    We are using PEAP-MS-CHAP v2 . The IAS certificate is valid to 2014. We have about 300 laptops, but now and then some of them fails to authenticate. Yesterday I noticed that if I had one of the failing computers connected with wire, after some minutes it suddenly authenticated wireless!

  • 802.1X Novell Chap authentication problems

    Ok, I've got FreeRadius up and authenticating successfully to eDir with
    LDAP. If I boot workstation only and use the built in Microsoft
    supplicant, etc. PEAP MSCHAP, I can authenticate to my access point
    using my edir credentials. Then I can click on the Novell client and log
    into the network.
    If I turn on the Novell Client 491sp4 802.1X support which puts in the
    Novell Chap as the authentication method it stops working. The
    Freeradius server shows the error <no password attribute> just as if my
    Universal Password wasn't set. But it is because it works with MSChap as
    the authentication method.
    I've applied all the Microsoft KB patches for WiFi I can find listed
    here in the listserv. Even the one that you have to submit to MS to
    receive 923154. I've set supplicant mode to 3 in the registry. I'm
    really at a loss.
    I'd just love to have the Novell Client do single sign on to our WPA
    protected wireless. Any advise is greatly appreciated. I see some of you
    have it working with minor problems. Can you help this long time Netware
    user since 2.X in college get it going too?
    Thanks in advance.
    -Nyle

    Nyle F. Landas wrote:
    > If I turn on the Novell Client 491sp4 802.1X support which puts in the
    > Novell Chap as the authentication method it stops working. The
    > Freeradius server shows the error <no password attribute> just as if my
    > Universal Password wasn't set. But it is because it works with MSChap as
    > the authentication method.
    Addendum: I've got it so if I log into Workstation only, it will
    authenticate using the Novell MSCHAP. It just won't authenticate with
    the Novell Client so that I have a single sign on.
    The error from the client changes but most of the time I get - "802.1X
    Found no connections to authenticate" Sometimes I get "802.1X
    Authentication failed. Timeout waiting for Authentication to finish.
    Logging into workstation only."
    If I set SuppliantMode to 3 it also won't even authenticate when I log
    in as workstation only. If I delete that key it will at least work at
    the workstation only.
    Again I believe I've applied all KB from Microsoft. Did I miss something
    simple? HELP, Please......
    -Nyle

  • L2TP VPN Problem Authenticating

    Hi there
    I'm trying to get my mac mini server running again after moving to a new appartment and switching the internet provider.
    So I thought all I have to do is setup the new router and enable port forwarding on it on the UDP Ports 500, 1701 and 4500 (the rest should be still working, thanks to dyndns)
    But somehow I can't establich a vpn connection any more, and I wonder why... when I try to establish a vpn connection with my macbook air, it seems to remain in a "authenticating" state.
    I do not get an authentication failed message
    Nor do I get any other message...
    Here's the console output
    2/23/12 1:08:14.675 AM racoon: IKEv1 Phase2 Initiator: success. (Initiator, Quick-Mode).
    2/23/12 1:08:14.675 AM racoon: IPSec Phase2 established (Initiated by me).
    2/23/12 1:08:14.676 AM pppd: IPSec connection established
    2/23/12 1:08:14.855 AM pppd: L2TP connection established.
    2/23/12 1:08:14.859 AM pppd: Connect: ppp0 <--> socket[34:18]
    2/23/12 1:10:13.020 AM configd: SCNC: stop, type L2TP
    2/23/12 1:10:13.030 AM pppd: Connection terminated.
    As visible a connection get's established ... and then after two minutes I killed it again because it still showed "authenticating"
    And if I try to connect to the server from my iPhone I get a "The L2TP-VPN server did not respond" message.
    Any ideas what could be the cause?
    Best regards
    Alex

    when i connect l2tp vpn I see the message in console ipsec connection faild after phase 1 and phase 2.
    Any solutiion of someone.

  • Reason 413: User Authentication Failed

    Hi, I have not used my VPN connection for quite some time but when I did recently try and log on again I get the box to enter in my user name and password, I proceed to enter it, then the box pops up again, I enter it again, and then it pops up a third time, and I enter it a third time.  Finally I get a Reason 413: User Authentication Failed message box and I never can connect.  Does this sound like a problem with my actual user name and/or password, or could it be something else? I am using Windows8. Thanks

    The actual reson of failure can be seen on the external authentication server. If you have a radius server, please go and check what error message are you getting there.
    Could be dial-in issue, max-number of session, wrong password, acount locked-out etc
    Also let us know what radius are you using?
    Jatin Katyal
    - Do rate helpful posts -

  • Reason 413: User authentication failed. rv320

    I tried to use your Cisco VPN CLient ( )
    ANd I got always this error:
    Initializing the connection...
    Contacting the security gateway at 24.37.141.234...
    Authenticating user...
    Contacting the security gateway at 24.37.141.234...
    Secure VPN Connection terminated locally by the Client.
    Reason 413: User authentication failed.
    Connection terminated on: Mar 31, 2014 21:46:35        Duration: 0 day(s), 00:00.00
    Not connected.

    The actual reson of failure can be seen on the external authentication server. If you have a radius server, please go and check what error message are you getting there.
    Could be dial-in issue, max-number of session, wrong password, acount locked-out etc
    Also let us know what radius are you using?
    Jatin Katyal
    - Do rate helpful posts -

  • L2TP / CHAP Authentication Faliure OS X Server Yosemite 10.10.1

    Hello everyone, I saw this problem come up in older versions of server and solutions revolved around group manager but its not available for Yosesmite.
    Here is the log I get
    Fri Jan 23 02:05:24 2015 : L2TP incoming call in progress from '192.168.0.13'...
    Fri Jan 23 02:05:24 2015 : L2TP received SCCRQ
    Fri Jan 23 02:05:24 2015 : L2TP sent SCCRP
    Fri Jan 23 02:05:24 2015 : L2TP received SCCCN
    Fri Jan 23 02:05:24 2015 : L2TP received ICRQ
    Fri Jan 23 02:05:24 2015 : L2TP sent ICRP
    Fri Jan 23 02:05:24 2015 : L2TP received ICCN
    Fri Jan 23 02:05:24 2015 : L2TP connection established.
    Fri Jan 23 02:05:24 2015 : using link 0
    Fri Jan 23 02:05:24 2015 : Using interface ppp0
    Fri Jan 23 02:05:24 2015 : Connect: ppp0 <--> socket[34:18]
    Fri Jan 23 02:05:24 2015 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x359a7585> <pcomp> <accomp>]
    Fri Jan 23 02:05:24 2015 : rcvd [LCP ConfReq id=0x1 <asyncmap 0x0> <magic 0xd74787e> <pcomp> <accomp>]
    Fri Jan 23 02:05:24 2015 : lcp_reqci: returning CONFACK.
    Fri Jan 23 02:05:24 2015 : sent [LCP ConfAck id=0x1 <asyncmap 0x0> <magic 0xd74787e> <pcomp> <accomp>]
    Fri Jan 23 02:05:27 2015 : sent [LCP ConfReq id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x359a7585> <pcomp> <accomp>]
    Fri Jan 23 02:05:27 2015 : rcvd [LCP ConfAck id=0x1 <asyncmap 0x0> <auth chap MS-v2> <magic 0x359a7585> <pcomp> <accomp>]
    Fri Jan 23 02:05:27 2015 : sent [LCP EchoReq id=0x0 magic=0x359a7585]
    Fri Jan 23 02:05:27 2015 : sent [CHAP Challenge id=0x66 <0e68752c580b611f2a31274224020b62>, name = "Balazs-Toths-MacBook-Pro.local"]
    Fri Jan 23 02:05:27 2015 : rcvd [LCP EchoReq id=0x0 magic=0xd74787e]
    Fri Jan 23 02:05:27 2015 : sent [LCP EchoRep id=0x0 magic=0x359a7585]
    Fri Jan 23 02:05:27 2015 : rcvd [LCP EchoRep id=0x0 magic=0xd74787e]
    Fri Jan 23 02:05:27 2015 : rcvd [CHAP Response id=0x66 <fd352d7f198c134b3a976260b88a9dd70000000000000000eaaf1a981aea56bf7c083a9a2f8935 ce580d3b2c532da72700>, name = "testuser"]
    Fri Jan 23 02:05:27 2015 : sent [CHAP Failure id=0x66 ""]
    Fri Jan 23 02:05:27 2015 : CHAP peer authentication failed for testuser
    Fri Jan 23 02:05:27 2015 : sent [LCP TermReq id=0x2 "Authentication failed"]
    Fri Jan 23 02:05:27 2015 : Connection terminated.
    Fri Jan 23 02:05:27 2015 : L2TP disconnecting...
    Fri Jan 23 02:05:27 2015 : L2TP sent CDN
    Fri Jan 23 02:05:27 2015 : L2TP sent StopCCN
    Fri Jan 23 02:05:27 2015 : L2TP disconnected
    2015-01-23 02:05:27 CET       --> Client with address = 192.168.1.1 has hungup
    I get the same error when trying to log in with the admin.
    All help is appreciated!
    Thank you

    When using klist, do you get an entry where the principal starts with imap?
    In Server.app, what authentication option(s) do you have selected for Mail?
    Tim
    p.s., I see I was wrong and you actually had commented on another thread.  Please start a new thread for your situation.

  • SAP Business One Integration Services Authentication Failed

    Dear ,
    ALL SAP forum members,
    Iam Using SAP Business One 8.81 PL 06, Micorsoft SQL 2008 R2
    In SLD B1DI and  JDBC, the connections were tested successfully.
    Whenever I log into SBO, I am getting "SAP Business One Integration Services Authentication Failed" error message. I did extensive research on all possible SBO documents dating 1 year back especially in B1ic Troubleshooting Document (New and Old) and searched the length of the SBO forums, but I could not a solution.
    I uninstalled and reinstalled the B1f package many a time. The integration services we re also restarted many times and the connections were all tested successfully. Firewall, AntiVirus also checked.
    In the B1f, in the Monitoring Window, the login is "Ok" but the AuthCheck is "Failed". I checked Authent.Monitor->Authentic Info  and I found the following message under Action message "Wrong Usrname and Password".
    I debugged and i found again "/com.sap.b1i.vplatform.scenarios.authen/sap.Xcelsius/Authenticate_Check.bfd
    But could not understand much of it.
    But i could go no further. The experts are requested to suggest their solutions, If any, to me as Iam stuck in this phase for the last 3 week
    I hope some experts will guide me over this issue
    Thanks and regards
    Ashish Gupte

    Hi Konstantin Ryahovsky
    Thanks for your reply. My problem is solved.
    And frankly speaking i dont know how it was solved. I have not uninstall, install ,not even i had restarted the server also.
    only change i did in SLD >> Maintainance >>> cfg Runtime >>>> Put server IP address instead of server Name and restarted the services.
    Thanks & regards
    Ashish Gupte

  • Toshiba EXCITE Pro - WIFI connection. Authentication failed after update

    Hello.
    Just received this Tablet.
    Everything seemed ok while updating to the latest version (did that first to solve the heat problems).
    After the last update *i lost my WIfi connection. Authentication failed* (didnt change something - was connecting - updating ok 1 minute before the last update).
    After that i started testing ,Wps connection , No security Wifi etc etc.
    *Finally at a random time (and with the initial settings) i got connected*. After i shut down the tablet the same problem occured.
    After doing the same things again i finally got connected and this time it seems to be ok, even after i shut down the tablet.
    However this is frustrating.
    Maybe you have to sort this out?
    I have seen and other people returning this tablet after having this problem.
    It is not a hardware problem since its working ok before the update.
    Of course tried factory reset twice.
    Hope i dont have this problem again, *but i am informing in hope that you fix this in a future update.*

    Toshiba sent me the fix for this. Figured I would use Facebook and they sorted a solution straight away.
    It requires a complete reset. Not the soft reset from within Android.
    I'll post it here as they will check through moderation I guess.
    Thanks for sending a private message Ben. For us to get this resolved for you we would advise to perform a reset from the Android system recovery menu, to do the reset please follow these steps:
    The reset process will delete any data, settings, and applications on your tablet. You must have a backup of any data you wish to keep before proceeding.
    1. Make sure the tablet is off and not in standby.
    2. Hold down the Volume Up and Power buttons simultaneously until the two Android icons appear.
    3. Use the volume buttons to select the white box on the right.
    4. Once selected, press the power button.
    5. Use the volume buttons to select wipe cache partition and then press the power button.
    6. Select Yes and press the power button.
    7. Use the volume buttons to select wipe data/factory reset and then press the power button.
    8. Select Yes and press the power button.
    9. The tablet will now reset.
    If you have any issues after the reset please get back to us as soon as possible!
    Its been working well ever since. I guess the cache clean part might be the main one. You'll have to select the reboot yourself as I did at the end.
    Might be best to use Facebook i'll see if I can find my post as the response was quick and efficient unlike their responses in here. I.e nowt from them so far.
    They needed my name and serial numbers probably to log problems etc.
    Message was edited by: bensimmo

Maybe you are looking for

  • Print out for PO

    hi, im facing the problem while giving the print out  - ME9F. not getting any print out when im giving.. can any one guide me.. wat is the procedure for printing PO & how to follow up the error thanks in advance

  • Does a Database Control use Prepared Statements?

    When I add a method to a database control I have to supply the SQL for that method. Under the covers does the database control convert that SQL into a prepared statement? Is this documented anywhere? Thanks for the help! Rob

  • Problem with flash player 8 & 9

    Hello. I'm french and speak a very bad english. I've problem with my website. It doesn't play with Version 8 and 9 of MACROMEDIA Flash Player. But it's good with Version 7. the adress : www.thedino.eu What could I do? Answer with a very simple englis

  • JRC Deployment Guide for Crystal Reports 2008

    I just downloaded a trial version of Crystal Reports 2008 & was testing out the integration of this component into our Java web based application. I found the "Crystal Reports XI Release 2 - Java Reporting Component Deployment Guide" PDF file, but I

  • Image Slider not appearing/visual in live view/Browser

    I updated a link to my image browser and once I hit refresh, everything seemed fine. I checked my rework on live view, and the whole slider (including images and buttons) were no longer visual. (You could not see them.) | <!--========================