SSH authendication with radius server fails if the user does not exist in radius client

Ivan Kalik tnt at kalik.net
Wed Jun 17 17:41:41 CEST 2009


> Do you mean the radius server can be only used for password authentication
> in case of ssh/telnet?

Yes.

> Can't we login using the centralized
> username/password?

No, that can't work. Let's say that you were authenticated and reached the
shell as a nonexistant local user. How is he suposed to access anything or
execute any commands? No permissions would apply to him.

Ivan Kalik
Kalik Informatika ISP




More information about the Freeradius-Users mailing list