In part III of this ISDN primer, we learned that PPP has two main methods of authentication that Cisco certification candidates need to know how to configure: PAP and CHAP.
PAP has very few advantages over CHAP. PAP passwords are carried over the line in clear-text, which in today's world is a very bad idea. PAP configuration also requires additional configuration with the "ppp pap sent-username" command, so anyone who can see your running configuration can also see the PAP password.
The only advantage PAP has over CHAP is a slim one. With PAP, a different password can be used by the each of the routers involved in the authentication. CHAP requires that the password be the same. Why? We'll see as we examine CHAP authentication.
The First Step to Configuring CHAP
CHAP requires you to configure a username / password combination for any remote device that will be involved in authentication. (We're assuming that the routers have already been configured with their names via the global hostname command.) Both routers will use the password CISCO.
R1:
username R2 password CISCO
int bri0
encapsulation ppp
ppp authentication chap
R2:
username R1 password CISCO
int bri0
encapsulation ppp
ppp authentication chap
Why CHAP Authentication Requires The Same Password On Both Routers
Remember how PAP sends the password over the line in clear-text? CHAP does not actually send the password over the line at all. Instead, CHAP runs a hash algorithm using the password and a random number. It is the result of this hash that is passed over the link. The remote router receives the hash result, and runs the exact same algorithm. If the result is the same, the authentication attempt will be successful. If the result is different, the authentication will fail. For this reason, the passwords must be the same.
Debug The Connection If Authentication Fails
Since two passwords are involved, the chances of one of the passwords being mistyped doubles. If you configure CHAP and the link dials but drops almost immediately, there's an authentication problem. Run debug ppp negotiation and attempt to dial the line again. The output of this particular debug will show you where the problem is.
Chris Bryant, CCIE (TM) #12933, has been active in the Cisco certification community for years. He has written several books that have helped CCNA candidates around the world achieve the coveted CCNA certification, including several concentrating on binary math conversions and subnetting questions that the average CCNA candidate will need to answer on their CCNA exams.
He is the owner of The Bryant Advantage (http://www.thebryantadvantage.com) where he teaches affordable world-class CCNA courses via the Internet, and sells his popular Cisco certification books. He???s proud to have helped CCNA candidates around the world achieve their career goals. Mr. Bryant???s books and courses are sold on his site, on eBay, and on several other major Cisco certification sites.
Tinley Park executive chauffeured services .. Lockport Chicago limo O’HareMicrosoft Business Solutions Great Plains was designed back in the... Read More
Microsoft Business Solutions products: Great Plains, MS CRM, Navision, Axapta,... Read More
Whether you are a small consultancy firm, a medium sized... Read More
Great Plains Fixed Assets Management module is a robust tool... Read More
Microsoft Great Plains is main Microsoft Business Solutions accounting package... Read More
Microsoft Business Solutions Great Plains, former Great Plains Software Dynamics... Read More
You turn on your computer, and it doesn't look quite... Read More
If you have been running Windows XP for a couple... Read More
This article is for advanced Microsoft CRM SDK C# developers.... Read More
As Mozilla Firefox nears 10% market share, with well over... Read More
Spyware and malware are large problems for Internet users today... Read More
Features Additionally, Vista will include many other new features.Aero Vista... Read More
It would be easy to think, like most people apparently... Read More
Not every software testing project can or should be automated.... Read More
Microsoft Business Solutions Small Business Manager is scaled down Great... Read More
SAP Inc., a global leader in client/server enterprise application software... Read More
Microsoft Business Solutions Great Plains, Solomon, Navision, Axapta, Microsoft CRM... Read More
We don't think about mainframe software pricing anymore, we just... Read More
The major reason I recommend getting your hands on real... Read More
Beginning with Domino version R4 it has integration with the... Read More
Microsoft Great Plains may be recommended for international freight forwarding... Read More
When you think... Read More
The COSMIC FP (function point) software quality metric, is no... Read More
It won't matter how effective your WinRunner Team is if... Read More
Microsoft Great Plains is now standard mid-market ERP application, serving... Read More
limo Chicago Hickory Hills ..What is a Web Database?A web database is a database... Read More
Combining Microsoft Business Solutions Great Plains ERP with non-Microsoft Business... Read More
NOTE: Please take time to read on - it may... Read More
FTP stands for "file transfer protocol". FTP is basically a... Read More
TCO (Total Cost Ownership) is the buzzword in... Read More
IntroductionPHP can be used for a lot of different things,... Read More
ERP Consulting industry is on the way to serve clients... Read More
After seeing many people complain about their weak Internet security... Read More
For those who still don't know, Microsoft Publisher helps computer... Read More
If you are software developer or database administrator - we... Read More
In linux, one of great commands for finding out information... Read More
Microsoft Business Solutions CRM and IBM Lotus Notes Domino, being... Read More
If there still are few unprotected computers left, I haven't... Read More
In part III of this ISDN primer, we learned that... Read More
If you have Microsoft Great Plains and support it... Read More
Microsoft CRM and IBM Lotus Notes Domino seem to be... Read More
Microsoft Business Solutions is now in process of creating so... Read More
When it comes to screenplay software each screenwriter needs to... Read More
1. With mapping software you can create a report that... Read More
Assertion facility is added in J2SE 1.4. In order to... Read More
The Software 2005 conference is now a wrap. This conference,... Read More
It is now common thing when large corporation selects mid-market... Read More
With the advent of 'Service Pack 2' for Windows XP... Read More
Our company, Novaprof Inc., developed unique software - DB Integration.... Read More
Many reasons made GBM a unanimous choice for experts, one... Read More
Software |