Solved

NPS Radius authentication problem

Posted on 2010-11-24
5
1,652 Views
Last Modified: 2013-11-12
After a server crash on my old NPS server, I imported the xml configuration file to my new nps server. It is used with a Cisco WLC for web authentication on our guest lan.
But since I moved the nps to a new server, I keep getting "No reversibly encrypted password is stored for the user account", I even tried to select "use reversibly encryption in AD", which is not what I want, but I still get the same error in the NPS log.
I have imported the certificate to the new nps server and configured it for PEAP-MS-CHAP v.2.
If I select "Accept users without validating credential" in NPS Connection request policy my ad users can log on, but I quickly learned that you could then write anything in username and password and still get in.
The log file for NPS only says "No reversibly encrypted password is stored for the user account", I even tried to select "use reversibly encryption in AD", no matter what I try, even if I selct unencrypted authentication in NPS.
What could be wrong?
0
Comment
Question by:Ducknaldi
  • 4
5 Comments
 
LVL 42

Expert Comment

by:kevinhsieh
ID: 34210664
Did you reset the RADIUS client password on the new NPS server? It won't come over in the XML file for security reasons.
0
 
LVL 1

Author Comment

by:Ducknaldi
ID: 34211272
I tried to reset the shared secret, no luck:(
0
 
LVL 1

Author Comment

by:Ducknaldi
ID: 34211315
I now tried a 3´rd server with the same configuration. It seems no matter what I do it wants a reversibly encrypted password to be stored in AD. This is not an option for obvious reasons and would also require all users to change their password before it would work.
0
 
LVL 1

Accepted Solution

by:
Ducknaldi earned 0 total points
ID: 34212832
Ok, I solved the problem with a Cisco Secure Access Server instead.
The NPS stinks when it comes to logging what´s going on and I could have been guessing forever.
0
 
LVL 1

Author Closing Comment

by:Ducknaldi
ID: 34237161
The real problem was never soved with NPS.
0

Featured Post

Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Need WiFi? Often, there are perfectly good networks that don't have WiFi capability - and there's a need to add it.  - Perhaps you have an Ethernet port into a network but no WiFi nearby. - Perhaps you have a powerline extender and no WiFi at the…
For Sennheiser, comfort, quality and security are high priority areas. This paper addresses the security of Bluetooth technology and the supplementary security that Sennheiser’s Contact Center and Office (CC&O) headsets provide.  
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will show how to configure a single USB drive with a separate folder for each day of the week. This will allow each of the backups to be kept separate preventing the previous day’s backup from being overwritten. The USB drive must be s…

867 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now