Autz-type LDAP, Auth-Type MSCHAP possible ? (for vlan assignment)

tnt at kalik.net tnt at kalik.net
Wed Feb 18 12:16:13 CET 2009


>My goal is to assign vlans from some Organizational Units in AD.

So do it. You don't need to force any Auth or Autz types. Set up the
group membership filter in ldap module. It will give you Ldap-Group
which you can use to assign vlans:

DEFAULT   Ldap-Group == something
                some tunnel attributes

DEFAULT   Ldap-Group == something_else
                 some other tunnel attributes

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list