Evaluate condition against LDAP with ulang

Dave Macias davama at gmail.com
Wed Oct 31 14:31:10 CET 2018


That is an interesting question. I personally was not sure but as it would
have it someone asked a similar question.

http://lists.freeradius.org/pipermail/freeradius-users/2018-October/093168.html

Hope that helps

On Mon, Oct 29, 2018 at 8:41 AM Alejandro Cabrera Obed <aco1967 at gmail.com>
wrote:

> Dear Dave, yes....I have tried this:
>
> OU=Employess,DC=company,DC=com
>
> But what is the condition to ask for users below an OU and not a Group ???
>
> Thans again, regards.
>
> El vie., 26 oct. 2018 a las 16:37, Dave Macias (<davama at gmail.com>)
> escribió:
>
> > You could look into your ldap module and edit your base/users
> >
> > Tried that?
> > On Oct 26, 2018, 3:10 PM -0400, Tom Yard <tomyyard at gmail.com>, wrote:
> > > Hi people,
> > >
> > > I have implemented a Freeradius sever running OK that authenticate
> > against
> > > LDAP.
> > >
> > > Firstly, I have a LDAP tree with users under groups, such as:
> > >
> > > CN=Network,OU=Employess,DC=company,DC=com
> > >
> > > and my evaluating condition wit ulang was:
> > >
> > > if (LDAP-Group == Network)
> > >
> > > And the authentication was OK.
> > >
> > > But now, the LDAP administrators has modify the LDAP tree and now the
> > users
> > > are under the OU as below:
> > >
> > > OU=Employess,DC=company,DC=com
> > >
> > > How can I evaluate the condition "if the user is under OU=Employees"
> ???
> > >
> > > Because if I use if (LDAP-Group == Employees), it doesn't authneticate.
> > >
> > > Thanks a lot, regards !!!
> > > -
> > > List info/subscribe/unsubscribe? See
> > http://www.freeradius.org/list/users.html
> > -
> > List info/subscribe/unsubscribe? See
> > http://www.freeradius.org/list/users.html
>
>
>
> --
>  //  Alejandro   //
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list