Recommendation

Paul Dugas paul at dugasenterprises.com
Mon Aug 16 23:30:20 CEST 2010


On Mon, Aug 16, 2010 at 5:02 PM, Alan DeKok <aland at deployingradius.com> wrote:
>  Use PEAP.  Ensure passwords are in a form compatible with PEAP:

My LDAP directory contains NT, LM, and SSHA passwords but not
clear-text so, if I'm following correctly, I need to look into using
ntlm_auth.  The docs explain how to do this with an AD deployment.
How do they differ if Samba is my PDC instead (no AD)?  Should it
still work?

I've actually already gotten some of this working.  Following the
one-step-at-a-time advice, I've gotten PEAP working with PAP in the
inner tunnel.  The FR2 package is far simpler than when I originally
set this up with FR1.

Paul




More information about the Freeradius-Users mailing list