[Search for users] [Overall Top Noters] [List of all Conferences] [Download this site]

Conference irocz::terminal_servers

Title:Terminal Servers
Notice:See Note 2 for Directory of important notes. Please use keywords.
Moderator:LAVC::CAHILLON
Created:Tue May 14 1991
Last Modified:Fri Jun 06 1997
Last Successful Update:Fri Jun 06 1997
Number of topics:3547
Total number of notes:12300

3468.0. "Timed CHAP Authentication?" by SNOFS1::KHOOJEANNIE (Hangovers: The Wrath of Grapes?) Tue Mar 18 1997 00:20

    A customer of ours is planning to use a DECserver with a leased line to
    each PC.  The security mechanism he would like to implement is CHAP only or
    CHAP in conjunction with the RADIUS server.
    
    However he wants to have the authentication happen on a timed basis,
    say, every 10 minutes or so.  Can we do this with CHAP only or
    CHAP/RADIUS?  If not, how do we guarantee on-going authenticity?
    
    Thanks for your help
    Jeannie
    
T.RTitleUserPersonal
Name
DateLines
3468.1I can't think of a way to do this with current software.IROCZ::D_NELSONDave Nelson LKG1-3/A11 226-5358Tue Mar 18 1997 01:5416
RE: .0
    
>    However he wants to have the authentication happen on a timed basis,
>    say, every 10 minutes or so.  Can we do this with CHAP only or
>    CHAP/RADIUS?  If not, how do we guarantee on-going authenticity?
 
I presume it's the DECserver that is interested in continual authentication
of the PC, and not the other way around.  This would require the DECserver
(DNAS) to implement periodic CHAP re-authentication.  We do not currently
have this feature.  Most PC clients will respond properly to mid-session
challenges.

Regards,

Dave