Help Needed !!! FreeRADIUS Integration with MS AD

pradyumna dash neomatrixgem at gmail.com
Thu Jan 24 19:02:50 CET 2013


Hi Alan,

Thanks for your reply.

Do you mean the below in the "users" file?


cisco Auth-Type := LDAP

Service-Type = Administrative-User,
cisco-avpair = "shell:priv-lvl=15"

Regards,
/Neo


On Thu, Jan 24, 2013 at 11:19 PM, <A.L.M.Buxey at lboro.ac.uk> wrote:

> Hi,
>
> you need whitspace before the service-type and cisco VSA lines after
> your auth line (they are reply items.....not check items) - if you
> run in debug mode (radiusd -X  or freeradius -X on some distros) you can
> confirm
> from the output that the VSA/TLV are being sent to the client (switch).
>
> if they are, and you are stil being dumped on the basic prompt
> then you need to revisit the cisco docs and ensure that you have
> all the required AAA lines in place to allow admin/enable access
> after login (ie if FreeRADIUS is sending the right stuff, then
> its a NAS configuration issue)
>
> alan
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20130124/704fae1f/attachment.html>


More information about the Freeradius-Users mailing list