Re: [RADIATOR] Converting from using a plaintext users file, to using LDAP

2013-09-25 Thread Hugh Irvine
Hello Elvind - Yes your approach will also work - I misunderstood your original question and thought you wanted to retain the AuthBy FILE component. The AuthBy FILE part would only be to hold the "group" reply attributes, which as you say can also be done with AddToReply in the simple case. r

Re: [RADIATOR] Converting from using a plaintext users file, to using LDAP

2013-09-25 Thread Eivind Olsen
Hugh Irvine wrote: > Yes this is fairly simple to do with multiple AuthBy clauses - in this > case with a trailing AuthBy FILE to set the required reply attributes. My plan is to avoid the entire AuthBy FILE, if I can, so whoever is provisioning these users won't have to also edit a file, adding t

Re: [RADIATOR] Converting from using a plaintext users file, to using LDAP

2013-09-25 Thread Hugh Irvine
Hello Elvind - Yes this is fairly simple to do with multiple AuthBy clauses - in this case with a trailing AuthBy FILE to set the required reply attributes. Depending on how many groups you need, it may be preferable to have a group attribute in each user record rather than use memberOf. In e

[RADIATOR] Converting from using a plaintext users file, to using LDAP

2013-09-24 Thread Eivind Olsen
Hello. I've very recently been given the task of migrating an existing Radiator installation from having its users in a plaintext file (AuthBy FILE), to authenticating against LDAP. This sounds straight forward enough, I'm somewhat familiar with AuthBy LDAP2. Now, what gets me a bit confused is