freeradius -peap ad/ldap

Sam Schultz segfault90 at hushmail.com
Thu Mar 15 16:44:07 CET 2007


On Thu, 15 Mar 2007 10:16:14 -0500 joe vieira <jvieira at clarku.edu> 
wrote:
>Hi all,
>
>I'm using the RHEL build of freeradius 1.0.1.  I'm trying to do 

You really should upgrade that. If I recall correctly, there were
some nasty bugs in the early 1.0.x builds.

>something  that might seem totally stupid, so let me know if i am 
>(no 
>need to flame).   I'm new to freeradius so bear with me a bit.
>

We were all new at some point, some people just forget that :)

>i have eap-peap authentication working against our ad domain.  
>peachy 
>keen.  what i would like to be able to do is, in our openldap 
>environment, store attributes for retrieval by radius, cisco 
>stuff/ 
>etc... i assume the way to do this would be to use the 
>authorization  
>sections, but if you add ldap to that then it automatically adds 
>ldap 
>authentication...which i don't want..
>
>ideas?

You could try using one of the SQL modules. Unlike ldap, the sql
modules only retrieve attributes from an sql table, and sets the
attributes for use by later modules (or freeradius, if the
'Auth-Type := Local' has been set) 

>
>Joe Vieira
>UNIX Systems Administrator
>Clark University
>- 
>List info/subscribe/unsubscribe? See 
>http://www.freeradius.org/list/users.html

--
Click for free info on online doctorate degrees and make $250k/ year
http://tagline.hushmail.com/fc/CAaCXv1ZYZztVZng17ISIErfsWIIfBi9/




More information about the Freeradius-Users mailing list