Authenticating CHAP-Password to Pam (Kerberos 5 to AD)

Phil Mayers p.mayers at imperial.ac.uk
Fri Jan 27 23:34:11 CET 2006


Alan DeKok wrote:
> Patrick Bartkus <patrckb at gmail.com> wrote:
>> Does this mean that if I setup Samba on this box, get it to be a member of
>> the domain exchanging Domain UIDs and passwords, I could then authenticate
>> to Samba from my MS-CHAP-speaking NAS?
> 
>   Possible.  If it's an NT domain.
> 
>   If it's an Active Directory domain, then no, it's still impossible.
> Maybe Samba4 (when it's done) will allow this.

I'm confused - I and many people are doing MS-CHAP to an AD domain with 
samba3, winbind and the ntlm_auth helper - what are you referring to 
that doesn't work that samba4 would change?



More information about the Freeradius-Users mailing list