<[EMAIL PROTECTED]> wrote:
> Could someone explain why we have to use samba to authenticate
> against active directory.  Is there any other way to authenticate
> MS-CHAP attributes against active directory without using samba.

  Because Active Directory doesn't allow FreeRADIUS to see the
passwords through the normal LDAP interface.

  FreeRADIUS can pass the MSCHAP attributes to Samba, though, which
can use them to do a "domain login", and get a pass/fail response.

  If you could figure out how to do MSCHAP to a Windows domain
*without* using Samba, I would love to see it.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to