Allow unlimited simultanious users ?

James Hallahan Hallahan at danskmetal.dk
Wed May 5 07:08:39 CEST 2010


Hi Everbdody,

Right off the bat I will tell you that this is my first experience with
FreeRadius.

I have a customer that wants to do be able to connect their laptops to a
private network where we are running Edirectory as the authentication
directory.

Elements include - FreeRadius 2.1.6, Edirectory 8.7.x, SLES 11, LDAP
authentication, Windows XP sp3, Novell Client32 4.91 sp5

I have this working Windows XP sp3 workstation and the user is prompted
for username and passowrd for network access.

Import of root CA from FreeRadius Server to Windows XP (SLES 11)
PEAP and MSCHAP2 configuration on Windows XP

The workstations only login to Edir to authtenicate and sync their local
passwords all the applications are in a Citrx farm running off a Portal
and the user has to login an extra time to access the portal. (Which
could be a different username / password)

Actually the certificate + username and password are only giving the
user an IP address, there are no rights involved.

I was wondering if it is possible to get rid of the pop-up with username
and password by using a predefined username and password for all the
users ? This could mean (worst case) 200-300 simultanious users with
same FreeRadius username-password. This shouldn't be a problem for
Edirectory but I am unsure in regard to FreeRadius. I can change the
passowrd on the workstation at intervals by way of software
distribution.

All the users will be connecting by way of 1 Cisco controller connected
to the APs by way of a VPN.

Any thoughts - Experience with this ?

Jim







More information about the Freeradius-Users mailing list