AW: ntlm_auth authentication against multiple ADS domains

2007-02-09 Thread Habegger Lukas, ERZ-AZD-AIL
Hi I don't know exactly what you have to do. I have implemented something like this. --- --- | RAD |-| AD1 | --- --- | --- | AD2 | --- It's done with a perl module over rlm_perl. The perl module looks

Re: ntlm_auth authentication against multiple ADS domains

2007-02-09 Thread Phil Mayers
Dow, Corey wrote: > > Ntlm_auth --request-nt-key --DOMAIN=XYZ --username=jdoe This has been mentioned a few times in the archives, I believe without resolution. I'm not certain it works without some level of fiddling - it's been a while and my samba/ntdom/kerb skills are two years rusty, but I

Re: ntlm_auth authentication against multiple ADS domains

2007-02-08 Thread Gaddis, Jeremy L.
On Thu, 8 Feb 2007, Dow, Corey wrote: > up, and I have it working with a single ADS domain. The problem I've > encountered is performing authentication against multiple ADS domains using > ntlm_auth. > > ADS Parent domain netidm.net > ADS Child domain xyz.abc.com Are you actually trying to authent

ntlm_auth authentication against multiple ADS domains

2007-02-08 Thread Dow, Corey
Hi All, This is more of an ntlm_auth how to than a FreeRADIUS question, but I thought I would post here since others may have run across this. We're trying to use ntlm_auth and FreeRADIUS to authenticate users against an ADS back-end. I've found several excellent articles on how to set this