Re: Multiple forests

2009-11-16 Thread John
Thank you. I will give it a try. --- 09年11月16日,周一, Peter Lambrechtsen 写道: 发件人: Peter Lambrechtsen 主题: Re: Multiple forests 收件人: "FreeRadius users mailing list" 日期: 2009年11月16日,周一,下午5:50 You will need to setup two (or more) LDAP directory configs in the modules/ldap config.

Re: Multiple forests

2009-11-16 Thread Peter Lambrechtsen
You will need to setup two (or more) LDAP directory configs in the modules/ldap config. AD's LDAP interface isn't able to query inter-domain. So you need to setup a LDAP connection per unique domain. http://wiki.freeradius.org/Rlm_ldap On Mon, Nov 16, 2009 at 9:42 PM, John wrote: > Hi, > We a

Multiple forests

2009-11-16 Thread John
Hi, We are using freeRADIUS-1.1.6 talk to active-directory (multiple DOMAINs: "A.com" and "sub.A.com"). We use rlm_ldap module Global catalog port to get attributes from ADs. It works fine.   Now a forest(e.g.  "B.com", "sub.B.com" ...) that is trust with domain "A.com". I can not get attributes