Getting PAP to work with ntlm_auth

Alan DeKok aland at
Tue Jun 15 08:51:24 CEST 2010

Neil Prockter wrote:w
> I want to authenticate users against Active Directory for EAP-MSCHAPv2
> and PAP.  PAP is for a wireless web authentication redirection service
> that authenticates using PAP and its PAP I'm trying to debug not MSCHAP
> at present.

  For that, you can configure Active Directory as an LDAP server.  It
will be faster and more stable than using ntlm_auth.

> I've been following
> All goes well until I get towards the end.
> Once I remove
> DEFAULT Auth-Type = ntlm_auth
> from users PAP stops working

  If you *want* PAP to use ntlm_auth, then you need to leave that line
in.  We recommend deleting it because most people want PAP to use
*another* way of authenticating.

  Alan DeKok.

More information about the Freeradius-Users mailing list