machine authentication (was: Windows-Domain login without local users)

Alan DeKok aland at
Wed Nov 15 17:11:43 CET 2006

"Michael Messner" <michael.messner_edv at> wrote:
>  I've found out that there goes something completely wrong, there is
> allways the ldap request!

  Because you configured it to do that?  See doc/configurable_failover
for how to handle failure cases.

>  ldap: filter = "sAMAccountName=%{Stripped-User-Name:-%{User-Name})"

  That doesn't look right.

> rlm_ldap: performing search in CN=Users,DC=isalab,DC=local, with filter
> sAMAccountName=bob)
> rlm_ldap: ldap_search() failed: Bad search filter: sAMAccountName=bob)

  You're missing a bracket.

  Alan DeKok.
--       - The web site of the book - The blog

More information about the Freeradius-Users mailing list