In part III of this ISDN primer, we learned that PPP has two main methods of authentication that Cisco certification candidates need to know how to configure: PAP and CHAP.
PAP has very few advantages over CHAP. PAP passwords are carried over the line in clear-text, which in today's world is a very bad idea. PAP configuration also requires additional configuration with the "ppp pap sent-username" command, so anyone who can see your running configuration can also see the PAP password.
The only advantage PAP has over CHAP is a slim one. With PAP, a different password can be used by the each of the routers involved in the authentication. CHAP requires that the password be the same. Why? We'll see as we examine CHAP authentication.
The First Step to Configuring CHAP
CHAP requires you to configure a username / password combination for any remote device that will be involved in authentication. (We're assuming that the routers have already been configured with their names via the global hostname command.) Both routers will use the password CISCO.
R1:
username R2 password CISCO
int bri0
encapsulation ppp
ppp authentication chap
R2:
username R1 password CISCO
int bri0
encapsulation ppp
ppp authentication chap
Why CHAP Authentication Requires The Same Password On Both Routers
Remember how PAP sends the password over the line in clear-text? CHAP does not actually send the password over the line at all. Instead, CHAP runs a hash algorithm using the password and a random number. It is the result of this hash that is passed over the link. The remote router receives the hash result, and runs the exact same algorithm. If the result is the same, the authentication attempt will be successful. If the result is different, the authentication will fail. For this reason, the passwords must be the same.
Debug The Connection If Authentication Fails
Since two passwords are involved, the chances of one of the passwords being mistyped doubles. If you configure CHAP and the link dials but drops almost immediately, there's an authentication problem. Run debug ppp negotiation and attempt to dial the line again. The output of this particular debug will show you where the problem is.
Chris Bryant, CCIE (TM) #12933, has been active in the Cisco certification community for years. He has written several books that have helped CCNA candidates around the world achieve the coveted CCNA certification, including several concentrating on binary math conversions and subnetting questions that the average CCNA candidate will need to answer on their CCNA exams.
He is the owner of The Bryant Advantage (http://www.thebryantadvantage.com) where he teaches affordable world-class CCNA courses via the Internet, and sells his popular Cisco certification books. Heâ??s proud to have helped CCNA candidates around the world achieve their career goals. Mr. Bryantâ??s books and courses are sold on his site, on eBay, and on several other major Cisco certification sites.
![]() |
|
![]() |
|
![]() |
|
![]() |
In order to implement VLANs in a network environment, you'll... Read More
I started using PIP (Picture It Publishing) Platinum 2002 right... Read More
This article is the first of a series of articles... Read More
When Windows fails to boot it is normally caused by... Read More
There are certain pluses and minuses in both cases and... Read More
Microsoft Business Solutions Great Plains as new ERP for multinational... Read More
Anyone who has ever used Microsoft Word knows that it... Read More
Microsoft Business Solutions Great Plains, Solomon, Navision, Axapta, Microsoft CRM... Read More
While I was preparing some personal background information for a... Read More
Looks like Microsoft Great Plains becomes more and more popular,... Read More
Costs of fleet maintenance software can vary widely. It is... Read More
Music downloads are off the charts! We're listening to digital... Read More
Itâ??s easy to understand why you might be drawn to... Read More
Need software to record your voice, streaming audio or musical... Read More
What is IRC?IRC is Internet Relay Chat. It is a... Read More
Upgrading. Downtime. Maintenance. Hardware obsolescence. Implementation issues. The litany of... Read More
In the real world a "fire wall" is a fireproof... Read More
Following tips help you to learn a software in lesser... Read More
Enabling Chinese input is quick and easy, there are only... Read More
Bad News - the Threat is Bigger than it SeemedHow... Read More
Are you one of those people that keeps track of... Read More
In 2004 Oracle, Inc. made its new step toward J2EE... Read More
Should one use Windows Update?This topic has good and valid... Read More
We've all seen the ads on TV for Netzero 3G.... Read More
Great Plains Purchase Order Processing (POP) module makes up one-third... Read More
Think of this, first we had the HAM Radio, then... Read More
Small can be beautiful! Working with Knoppix for the past... Read More
Trying to figure out a stream in banning one email... Read More
The most important things you can do for your computer... Read More
With many manufacturing shops heading over seas in favor of... Read More
Looks like Microsoft Great Plains becomes more... Read More
What is Groupware?Have you ever had to manage document collaboration... Read More
The COSMIC FP (function point) software quality metric, is no... Read More
Assertion facility is added in J2SE 1.4. In order to... Read More
It won't matter how effective your WinRunner Team is if... Read More
People often ask me: What image file formats will Photoshop... Read More
Microsoft Business Solutions Great Plains has I'd say end user... Read More
Programming Help for BeginnersWe write programs to instruct computers. When... Read More
Microsoft Business Solutions Great Plains is very good fit for... Read More
Professional services firm cuts costs and improves productivity with integrated... Read More
While several preventive maintenance software manufacturers offer free trials for... Read More
I suggest that you do not spend a lot of... Read More
Great Plains Inventory Management (IV) module gives your business a... Read More
Designing without tables by using CSS layouts is fast becoming... Read More
The stakes are high when considering security, privacy, and savings,... Read More
We will base our prognosis on our Microsoft Business Solutions... Read More
Before being able to choose a secure Internet communication system,... Read More
Although statistics often is blamed for various deadly sins --... Read More
According to a survey conducted by InfoTrends/CAP Ventures entitled "Content-Centric... Read More
Microsoft Great Plains and Microsoft Retail Management System (Microsoft RMS)... Read More
What is RAID RECOVERY?RAID stands for Redundant Array of Inexpensive... Read More
Microsoft Great Plains fits to majority of horizontals and retail... Read More
Microsoft Business Solutions products: Great Plains, MS CRM, Navision, Axapta,... Read More
Microsoft Retail Management (RMS) and Microsoft Great Plains are retail... Read More
In today's business world it's all but impossible to escape... Read More
In a previous article, I wrote about OpenOffice... Read More
Have you noticed WordPerfect is gearing up for a comeback... Read More
Microsoft Business Solutions CRM proved to be reliable solution in... Read More
The Windows registry is a huge database that ensures normal... Read More
Microsoft CRM is relatively new player on the now becoming... Read More
In the Clinton era the status quo was simple: you... Read More
All your software is stored on a hard-drive. But how... Read More
This is the tutorial where we really get into programming.... Read More
Are Spreadsheets Robbing your Enterprise of Competitive Advantage?'90% of "average"... Read More
ERP (Enterprise Resource Planning) Overview covers What is ERP, Brief... Read More
In this article you will find some background information about... Read More
Software |