Hello StepHan,
at the moment rlm_perl and also privacyidea does not support mschapv2.
You can understand the error message about the missing "pass" parameter,
since the User-Password attribute is expected in the RADIUS request.
https://github.com/privacyidea/FreeRADIUS/blob/f6fa2ac72b77a82c7d232f96128524b3b192461c/privacyidea_radius.pm#L282
Supporting mschapv2 is a bit tricky, since the challenge is mangled with
the hash of the password.
To calculate the hash of the password on the backend (privacyidea) side,
this is the tricky part. Since the OTP PIN is saved in a hashed way by
default, we can not calculate the
HASH(otppin + otpvalue)
since it is not equal to
HASH(otppin) + HASH(otpvalue)
This means, we would have to save the OTP PIN in an encrypted way, to be
able to decrypt the OTP PIN.
Kind regards
Cornelius
> --
> Please read the blog post about getting help
>
https://www.privacyidea.org/getting-help/.
>
> For professional services and consultancy regarding two factor
> authentication please visit
>
https://netknights.it/en/leistungen/one-time-services/
>
> In an enterprise environment you should get a SERVICE LEVEL AGREEMENT
> which suites your needs for SECURITY, AVAILABILITY and LIABILITY:
>
https://netknights.it/en/leistungen/service-level-agreements/
> ---
> You received this message because you are subscribed to the Google
> Groups "privacyidea" group.
> To unsubscribe from this group and stop receiving emails from it, send
> an email to
privacyidea...@googlegroups.com.
> To post to this group, send email to
priva...@googlegroups.com.
> Visit this group at
https://groups.google.com/group/privacyidea.
> To view this discussion on the web visit
>
https://groups.google.com/d/msgid/privacyidea/b38986ad-fe59-4567-8880-a4acaeb21c3b%40googlegroups.com.
> For more options, visit
https://groups.google.com/d/optout.
--
Cornelius Kölbel
corneliu...@netknights.it
+49 151 2960 1417
NetKnights GmbH
http://www.netknights.it
Landgraf-Karl-Str. 19, 34131 Kassel, Germany
Tel:
+49 561 3166797, Fax:
+49 561 3166798
Amtsgericht Kassel, HRB 16405
Geschäftsführer: Cornelius Kölbel