Markus Moeller wrote: > I am new to freeradius and try to authenticate users with pam and authorize > with ldap groups. I try to find a minimal configuration but have some > problems forcing the Auth-Type to be PAM.
You are aware that this will make EAP and many other authentication methods impossible? ... > authorize { > auth_log > ldap > } You can add the following just after ldap: update control { Auth-Type := PAM } > Only if I set set_auth_type = yes in radiusd.conf for ldap and change > authorize in default to: > Auth-Type LDAP { > pam > } Please don't do that. > Is there also a way to disable the use of the ldap.attribute mapping as I > really don't need it ? You'll have to edit the source code. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html