Activate LDAP group membership checking

mic nightic micnightic at gmail.com
Fri Oct 22 10:58:18 CEST 2010


Hi,

I'm trying to activate the LDAP group membership checking in FreeRadius.

In my radiusd.conf i've modified the group checking section:

groupname_attribute = cn
groupmembership_filter =
"(|(&(objectClass=GroupOfNames)(member=%{Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{Ldap-UserDn})))"
groupmembership_attribute = ou

By looking in my openldap logs, freeradius is not even trying to search for
the group.

Do i have to activate something else to enable group checking?

Thank you
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20101022/ab6f38bf/attachment.html>


More information about the Freeradius-Users mailing list