radius+ldap+peap

Arjuna Scagnetto arjuna at ts.infn.it
Fri May 18 15:03:03 CEST 2007


> 
> 
> O/H Alan DeKok ??????:
>> Arjuna Scagnetto wrote:
>> ...
>>   
>>> PEAP with user whose password is in LDAP
>>>     
>> ...
>>   
>>> userPAssword: {SSHA}tymetcetcetc
>>>     
>>   This WILL NOT WORK.  See:
>>
>> http://deployingradius.com/documents/protocols/compatibility.html
>>
>>   use clear-text passwords in LDAP.  If you can't put clear-text
>> passwords in LDAP, stop trying to use PEAP.
>>
>>   Alan DeKok.
>>   

yes i've seen the matrix, i'll try EAP-TTLS + PAP so i can authenticate 
against LDAP with any password hash.

Thanks for helping

as soon as the book is pubblished you'll become rich! :)

bye
arjuna

-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.




More information about the Freeradius-Users mailing list