WPA2 Client Authentication using Radius and remote LDAP server

Alan DeKok aland at deployingradius.com
Wed Sep 19 12:41:17 CEST 2018


On Sep 19, 2018, at 5:04 AM, daada muyiwa via Freeradius-Users <freeradius-users at lists.freeradius.org> wrote:
> 
> Is it an actual LDAP server?  Or is it Active Directory?       
>  ''Active directory''

  Then it's not a real LDAP server.  It's close. but not quite a real LDAP server.

>> Allow FreeRADIUS to read the "known good" password from LDAP, and it will Just Work.
> 
> How do I make Freeradius decrypt the EAP request and query the AD with the clear text password in order to authenticate a user.

  You don't.  It's impossible.  You need to follow the Active Directory configuration guide:

http://deployingradius.com/documents/configuration/active_directory.html

  Alan DeKok.





More information about the Freeradius-Users mailing list