LDAP with fallback on local authentication?

Alan DeKok aland at deployingradius.com
Fri Apr 10 11:32:32 CEST 2009


Justin Steward wrote:
> Thanks for the reply. Since SQL modules can't go in authenticate, this
> would have to be in authorize, yes? How then, would I get the reply
> attributes out of the SQL database? Or am I misunderstanding something?

  Maybe you could describe exactly what you want to do.

> I currently have sql in authorize, the users have Auth-Type = LDAP, and
> ldap is in the authenticate section. This is authenticating users
> against LDAP, and getting the reply attributes from the SQL database.

  LDAP is not an authentication protocol.  I suggest using LDAP servers
as a database, if possible.

  Alan DeKok.



More information about the Freeradius-Users mailing list