Active Directory and authorize section

Harry Hoffman hhoffman at ip-solutions.net
Tue Feb 1 22:07:17 CET 2011


Right, I do understand the distinction which is why I asked the
question.

I didn't know if the tutorial just assumed everyone was authorized and
then granted access as long as the userid/password matched AD or if
there's something missing that should be addressed in authorize.

Cheers,
Harry


On Tue, 2011-02-01 at 20:48 +0000, Alan Buxey wrote:
> Hi,
> 
> > I'm trying to find out what to use (if anything) in the authorize
> > section when authenticating clients via MSCHAP-v2 and AD credentials.
> > 
> > The how-to at deployingradius.com only speaks to the authentication
> > section.
> > 
> > If I only want to ensure that the username/password credentials are
> > valid do I need to run through authorize or just go straight to
> > authenticate?
> 
> authorise - CAN i use the network
> 
> authenticate - is my ID and password correct
> 
> 
> once you get that and understand the very clear difference, then you can decide
> if you want to deal with authorise - and how to deal with it.
> 
> alan
> 





More information about the Freeradius-Users mailing list