AZTCOFW / TECHNICAL GUIDE
EAP-RADIUS with Windows Network Policy Server (NPS)
To allow strongSwan to authenticate against NPS using EAP-MSCHAPv2, alter the NPS policy as follows:
• Open Network Policy Server (NPS)
- Expand Policies
- Click Network Policies
- Edit the policy currently in use
- Click on the Constraints tabClick Authentication Methods
- Click Add
- Select Microsoft: Secured Password (EAP-MSCHAP v2)
- Click OK
- Click Apply (To restart NPS)
- Click OK
Imported from the AZTCOFW knowledge base on 2026-09-05. Historical guidance may refer to older software versions. Confirm applicability before changing a production system.
Original source ↗