ntlm_auth not working from within Freeradius with Domain in Username

Holger Steppke team4m at muenster.de
Mon Jan 19 17:16:45 CET 2009


Hi,

this would then just strip of the Domainname from the --username
parameter. So its lost.
If possile i like to keep it eithere in the username or if i can get it
in anothere variable (will check rlm_mschap if thee is one) to feed this
into --domain. In case its Empty i could pace a Default Domain there or
just let i fail.

Because if i dont keep it and hand it over to the ntlm i belive i can
only authenticate against one Domain. In case of Trusted Domains liek
TEST1 TEST2 TEST3 i need to tell ntlm (and then the PDC to whom i
authenticate against) in which Domain the user is.

At the End i like to use what is supplied on the Logon Screen in Windows
and there the Domain is importand as well.

Bye
	Holger


tnt at kalik.net wrote:
>> --username=%{Stripped-User-Name:-%{User-Name:-None}}
> 
> Try mschap:User-Name. That suggestion should be right above ntlm_auth
> line in mschap configuration.
> 
> Ivan Kalik
> Kalik Inormatika ISP
> 
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> 



More information about the Freeradius-Users mailing list