Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Is there such a thing as a pam module for ms-chap

Status
Not open for further replies.

Guest_imported

New member
Jan 1, 1970
0
I have a small office with about 11 NT boxes 1 of which is setup as a PDC. i also have a Linux gateway which does ipmasq-ing for the NT machines so that they can connect to the Internet.

All NT machines have internal ip addresses(ie 192.168.0.2 - 192.168.0.13)

I have also set up a pptp daemon on the Linux gateway so that those who wish to work from home can tunnel into the office(internal) network with pptp.

The authentication is currently using the chap-secrects file.
The problem is this: all user info, ie user names and passwords are stored on the PDC-which authenticates all local domain logins. I would like to use this PDC to authenticate the logins for pptp as wellm instead of using the chap-secrects file. This is so that i don't have to maintain 2 sets of username/passwords.
There is a pam modules which does authentication through NT PDC but it only works for pap, which isn't secure since passwords are passed as plain text. i would like to us ms-chap instead.

Is there a pam module that does ms-chap or is there another solution to this problem?

thanks in advance

regards
Jerel
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top