Captive portal: can I use chap or pap in conjunction with ntlm_auth?

Ivan Kalik tnt at kalik.net
Wed Jul 29 00:49:00 CEST 2009


> I am trying to get a captive portal working so my wireless users can
> enter their Windows domain credentials and get internet access.
>
> I've been working with chilispot/hotspotlogin.cgi and/or Copspot (an
> implementation of chilispot for IPCOP) both of which try to do CHAP
> with freeradius. Chili can also just hand a clear text password
> through. Either approach works fine if I put users in the users file,
> however I can't get this to work with my AD backend.

No, you can't.

http://deployingradius.com/documents/protocols/compatibility.html

> NTLM auth does
> work if I use WPA2

Because that uses peap as authentication protocol.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list