Windows-Domain login without local users

Michael Messner michael.messner_edv at inode.at
Tue Nov 7 18:33:20 CET 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

hey Michael,

King, Michael schrieb:
> I'm Interpreting your question a little....
> 
> Please correct the question if I've got it wrong.
> 
> You want to user's to be able to have network connectivity at the logon
> prompt, so they're username/password is sent to the domain?
> 
> You need to use Machine Authentication. (AKA computer account
> authentication)  This only works with:

machine authentication was the keyword I've searched ... thanks a lot

somebody knows a good howto for this?

thanks mIke


> 
>> -----Original Message-----
>> From: 
>> freeradius-users-bounces+mking=bridgew.edu at lists.freeradius.or
>> g 
>> [mailto:freeradius-users-bounces+mking=bridgew.edu at lists.freer
>> adius.org] On Behalf Of Michael Messner
>> Sent: Monday, November 06, 2006 9:37 AM
>> To: freeradius-users at lists.freeradius.org
>> Subject: Windows-Domain login without local users
>>
>> hey freeRADIUS users,
>>
>> PEAP auth. works now with *X and MS-clients, the backend is a 
>> freeradius server on centOS with active directory connection.
>> Now, the user needs a local account to login to the 
>> clientmachine and then he is able to start the PEAP 
>> authentication process.
>>
>> A local login for every user is a big overhead! What is the 
>> normal way to handle this?
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFUMNgyUY4xkIcFVQRAsF3AJ99+H4Vp7GlgM4S+2QcLU83+KAHjwCbBn6l
tSlImPmZwmz9dYUBz7xE3/U=
=Mey6
-----END PGP SIGNATURE-----



More information about the Freeradius-Users mailing list