ldap auth based on user acc and dialupaccess attr

Jacob Jarick mem.namefix at gmail.com
Wed Jul 11 02:37:56 CEST 2007


On 7/11/07, Alan Walters <alan at radiowave.ie> wrote:
> On Tue, 2007-07-10 at 10:34 +0100, tnt at kalik.co.yu wrote:
> > >Im currently trying to setup FR to authenticate a user / machine
> > >regardless of password
> > ..
> > >In the end I hope to have the ldap check if dialup access is allowed,
> > >if it is then check if user / pass is correct via ntlm.
> >
> > This makes no sense. If you are going to authenticate users regardless of
> > the password (based on that dialup flag), what is the point in checking
> > passwords with ntlmauth (or Ldap)?
>
> i think the point of this is you can use the flag to disable access to
> the account without changing password
>
yes thats what I am after, this way users can still log into the
domain on a wired connection but wireless access will be controlled by
the dialupAccess attribute.

> if dialup access is off don't auth if it is on check password if
> password is right auth
>
> dialup access should be TRUE or FALSE though
>
> >
> > Ivan Kalik
> > Kalik Informatika ISP
> >
> > -
> > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
>



More information about the Freeradius-Users mailing list