Frank Cusack <[EMAIL PROTECTED]>wrote:
> On Fri, Mar 28, 2003 at 11:51:36AM +0300, 3APA3A wrote:
> > /etc/smbpasswd  is  really  not  required and was only for compatibility
> > (anyway  it  should  be  noted  in Release Notes for peoples who upgrade
> > their RADIUS versions).

  I've done that, and added code to rlm_mschap which will complain if
people try to configure it to use /etc/smbpasswd, and will tell people
what to do to fix the problem.

> > Removing  SMB-Account-CTRL attribute handling is not good, I know people
> > use  it.  It's  very  convinient  if  accounts are bulk imported from NT
> > domain  or  from SAMBA. It's standard atribute from SAMBA passwd format,
> > SAMBA LDAP schema, etc.

  That I agree with.  But I was trying to take baby steps, to ensure
that I could get one thing working, becofee I added another.

> Yeah, I personally think both should be added back ...

  I am strongly opposed to duplicate functionality in the code.  If
rlm_passwd can do all of the work of reading attributes from
/etc/smbpasswd, then we should use it, and not duplicate that code
elsewhere.

  To put it another way, what is the gain in having rlm_mschap read
/etc/smbpasswd?

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to