CHAP/MS-CHAP/MS-CHAPv2 + LDAP problem

Alan DeKok aland at ox.org
Thu Sep 1 23:06:30 CEST 2005


Vilius =?utf-8?b?xaB1bXNrYXM=?= <vilius at lnk.lt> wrote:
> But Radius can't autenticate to LDAP as there is no User-Password 
> attribute in the packet. (rlm_ldap: Attribute "User-Password" is 
> required for authentication).

  Use LDAP as a database, not as an authentication server.

  See many, many, posts on this topic to this list.

> Is there a way to do this authentification and NOT turning MS-CHAP 
> protocol in VPN box? Are there some kind of preauth hooks in Radius?

  Have FreeRADIUS get the password from LDAP, and let FreeRADIUS do
the authentication.

  Alan DeKok.



More information about the Freeradius-Users mailing list