To remember : I want only user1 can access to host1.<br><br>To illustrate it:<br> root<br> | <br> ------------------<br> | | <br> hosts users <br>
| |<br> -------- ---------- <br> | | |<br> host1 user1 user2<br> |<br> | members:<br> |<br> user1<br> <br><br>I find a possible way.<br>
<br>in radiusd.conf, I put:<br>
groupname_attribute = "cn"<br>
group_membership_filter = (|(&(objectClass=GroupOfNames)(member=%{Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{Ldap-UserDn})))<br><br>In the users file, I put:<br>Ldap-Group == "XXXXX" Auth-Type:= LDAP<br>
<br>XXXXX will be the IP/hostname of the host which try to connect.<br><br>Is there any variable like %{LDAP-UserDN} which could give me this information ??<br><br>thanks for any help<br><br><br>-- <br>KeV<br>