On 28/06/13 17:31, Mathieu Simon wrote:
The result was same when using radtest with "-t mschap" if that's what
you're pointing out.
Interesting. I would not have expected that.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
G'day all
I've taken out a configuration from a earlier prototype that I used with
Samba/Winbind authentication but didn't use the rlm_ldap for authorization
back then. (Having some archives can be quite useful sometimes...) ;-)
Since ntlm_auth properly leads to Access-Rejects for disabled users
On 28/06/13 14:03, Arran Cudbard-Bell wrote:
On 28 Jun 2013, at 11:50, Phil Mayers
wrote:
On 28/06/13 08:14, Mathieu Simon wrote:
Second, I can't remember if mschap checks the acct control
flags in "authorize" or "authenticate". If the latter you'll
need to move away from using LDAP bind fo
On 28 Jun 2013, at 11:50, Phil Mayers wrote:
> On 28/06/13 08:14, Mathieu Simon wrote:
>
>>> Second, I can't remember if mschap checks the acct control flags in
>>> "authorize"
>>> or "authenticate". If the latter you'll need to move away from using LDAP
>>> bind for auth
>> Hmm, I guess that
On 28 Jun 2013, at 12:30, Thomas Hermarij Maimann Andersen wrote:
> Hi,
>
> I have a yum install free radius which I'm trying to use the perl module.
> I am following the examples/instructions here
> http://wiki.freeradius.org/modules/Rlm_perl
>
>
> But I'm getting an error when starting rad
Hi,
I have a yum install free radius which I'm trying to use the perl module.
I am following the examples/instructions here
http://wiki.freeradius.org/modules/Rlm_perl
But I'm getting an error when starting radiusd.
server { # from file /etc/raddb/radiusd.conf
modules {
Module: Creating Aut
On 28/06/13 08:14, Mathieu Simon wrote:
Second, I can't remember if mschap checks the acct control flags in "authorize"
or "authenticate". If the latter you'll need to move away from using LDAP bind
for auth
Hmm, I guess that would require me studying the code :-\
I've just taken a look - su
On 28 Jun 2013, at 10:45, Michael Rigoni
wrote:
> I had a quick look at the output you sent, and I see this:
> base_filter = "(sambaAcctFlags=[U ]"
> Seems like your are missing a closing bracket... but that should have
> triggered an error, so I looked at rlm_ldap source, and it see
I had a quick look at the output you sent, and I see this:
> base_filter = "*(*sambaAcctFlags=[U ]"
>
Seems like your are missing a closing bracket... but that should have
triggered an error, so I looked at rlm_ldap source, and it seems base
filter is only used for the "profile user" wha
G'day all, and thanks Phil for your hints
(Arran I'd want to leave 3.0 as an option of last resort even though it's
considered RC by now) ;-)
> try moving mschap after LDAP in "authorise"
Tried this one, no change unfortunately.
>Second, I can't remember if mschap checks the acct control flags i
10 matches
Mail list logo