Authenticate with machine account and without ntlm_auth

Rodrigo Antunes rodrigoaantunes at yahoo.com.br
Mon Nov 18 15:04:04 UTC 2024


I've never poked with EAP-TLS before, will do some studying and give it a try, thanks.






Em segunda-feira, 18 de novembro de 2024 às 11:53:13 BRT, Matthew Newton via Freeradius-Users <freeradius-users at lists.freeradius.org> escreveu: 





On 18/11/2024 14:48, Rodrigo Antunes via Freeradius-Users wrote:
> I will also try to explain better what I want to achieve, maybe someone have another solution:
> 
> I have a windows machine that is in kiosk mode, it is not domain joined and has no local users.
> I need this machine to authenticate against radius automatically, without the user provide credentials.
> 
> The alternatives i tried:
> 
> mac auth - don't work because windows client always try mschap
> kiosk user - don't work because kios mode don't has password
> machine user - the one I'm trying

Install a certificate on it and use EAP-TLS, as I suggested the other 
day. If it's not domain joined then you'll need to install the 
certificate yourself, but other than that the process is basically the same.

-- 
Matthew

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


More information about the Freeradius-Users mailing list