Computer Logon with PEAP-MSCHAPv2

Alan DeKok aland at ox.org
Sun Nov 13 18:22:01 CET 2005


Sebastian Mauer <sebastian at n-unity.de> wrote:
> The domain enabled machines are in ou=Machines,dc=rnet,dc=lan and
> their Machine Password is stored too in a SambaNTPassword Attribute.

  So update the LDAP queries to look there.

> So it might work if FreeRadius is able to find the machine entry in
> LDAP. The username for machines is machinename$ but I'm not sure what
> username Windows sens if it tries to authenticate a machine.

  You can do LDAP queries by hand to see what name should be used.
Then, make FreeRADIUS do the same queries.

  Alan DeKok.




More information about the Freeradius-Users mailing list