[3344] in North American Network Operators' Group
Re: Internet access and telco usage patterns
daemon@ATHENA.MIT.EDU (Michael Dillon)
Mon Jul  8 16:43:38 1996
Date: Mon, 8 Jul 1996 13:30:28 -0700 (PDT)
From: Michael Dillon <michael@memra.com>
To: Barry James <bjames@BJsUnixBox.terraware.net>
cc: Eric Woodward <ejw@globecomm.net>, hchen@aimnet.net, nanog@merit.edu
In-Reply-To: <Pine.LNX.3.91.960708161050.16055B-100000@BJsUnixBox.terraware.net>
On Mon, 8 Jul 1996, Barry James wrote:
> So, the only "secrets" that are shared are the md5 digest keys used 
> between the RADIUS server and TS.
Not quite. The user must "share" their password with the first RADIUS
client in order for it to be encrypted via MD5 in the first place. There
is a hole here. But there is a solution as well.
Michael Dillon                                   ISP & Internet Consulting
Memra Software Inc.                                 Fax: +1-604-546-3049
http://www.memra.com                             E-mail: michael@memra.com