Authenticate with machine account and without ntlm_auth
Rodrigo Antunes
rodrigoaantunes at yahoo.com.br
Mon Nov 18 15:04:04 UTC 2024
I've never poked with EAP-TLS before, will do some studying and give it a try, thanks.
Em segunda-feira, 18 de novembro de 2024 às 11:53:13 BRT, Matthew Newton via Freeradius-Users <freeradius-users at lists.freeradius.org> escreveu:
On 18/11/2024 14:48, Rodrigo Antunes via Freeradius-Users wrote:
> I will also try to explain better what I want to achieve, maybe someone have another solution:
>
> I have a windows machine that is in kiosk mode, it is not domain joined and has no local users.
> I need this machine to authenticate against radius automatically, without the user provide credentials.
>
> The alternatives i tried:
>
> mac auth - don't work because windows client always try mschap
> kiosk user - don't work because kios mode don't has password
> machine user - the one I'm trying
Install a certificate on it and use EAP-TLS, as I suggested the other
day. If it's not domain joined then you'll need to install the
certificate yourself, but other than that the process is basically the same.
--
Matthew
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
More information about the Freeradius-Users
mailing list