Andrew Daniels <adaniels at imageek.org> wrote: > 1) Freeradius > 2) EAP-TLS -> PEAP (for secure, non-client certificate) > 3) LDAP for user authentication AD isn't an LDAP server. At least, not for passwords, it isn't. You've got to use ntlm_auth. See radiusd.conf. Alan DeKok.