freeradius and active directory

Vieri rentorbuy at yahoo.com
Sun Oct 5 12:45:51 CEST 2008


Hi,

I noticed that some freeradius.org howtos suggest to specify a "password server" in Samba when using ads security:

http://wiki.freeradius.org/FreeRADIUS_Active_Directory_Integration_HOWTO
http://deployingradius.com/documents/configuration/active_directory.html

Why should one do that, especially if the samba docs say "Use password server option only with security = server"?

Besides, if I comment out "password server =", specify "realm = MYDOMAIN.ORG" and then define the AD servers in krb5.conf one per line:

kdc = server1.MYDOMAIN.ORG:88
kdc = server2.MYDOMAIN.ORG:88

then authentication via AD is as expected.

I'm just curious to know why these howtos suggest to specify a password server when using ads security in Samba.

Thanks,

Vieri



      



More information about the Freeradius-Users mailing list