group search filter openLDAP

dhanushka ranasinghe parakrama1282 at gmail.com
Sat Mar 24 06:51:39 CET 2012


Hi guys,

im using freeradius with LDAP , and its authentication works fine when
i use following configuration.

       server = "ldap.home.com"
        identity = "cn=admin,dc=home,dc=com"
        password = home
        basedn = "ou=users,dc=home,dc=com"
        filter = "(uid=%{%{Stripped-User-Name}:-%{User-Name}})"
        base_filter = "(objectclass=radiusprofile)"
        access_attr = "uid"
        authtype = ldap

but , then i created the LDAP group, and add the members to that,

eg :

dn: cn=people,ou=users,dc=home,dc=com
objectClass: groupOfNames
objectClass: top
cn: wso2
member: uid=userone,ou=user,dc=home,dc=com
member: uid=usertwo,ou=user,dc=home,dc=com

, then i change my ldap  config  as follows ,

        server = "ldap.home.com"
        identity = "cn=admin,dc=home,dc=com"
        password = home
        basedn = "cn=people,ou=users,dc=home,dc=com"
        filter = "(uid=%{%{Stripped-User-Name}:-%{User-Name}})"
        base_filter = "(objectclass=radiusprofile)"
        access_attr = "uid"
        authtype = ldap

but this method is not working  , radius debug output says, user
cannot be searched within that group.  ,

is there any particular search method that i need use... ?  , what can
i do to sort out this problem ?



Thank You
Dhanushka


More information about the Freeradius-Users mailing list