Re: Ldap + EAP

This is a discussion on Re: Ldap + EAP within the FreeRADIUS Users forums, part of the Networking and Network Related category; Rafał Kamiński wrote: > Phil Mayers napisał(a): >> Assuming you want the most common EAP type, PEAP/...


Go Back   Usenet Forums > Networking and Network Related > FreeRADIUS Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-23-2007
Phil Mayers
 
Posts: n/a
Default Re: Ldap + EAP

Rafał Kamiński wrote:
> Phil Mayers napisał(a):
>> Assuming you want the most common EAP type, PEAP/MS-CHAP, your LDAP
>> server must contain the users plaintext password or NT/LM hash, and you
>> must configure FreeRadius to extract this information and add it to the
>> configure items for a given request.
>>

>
> Hi,
>
> Can you tell me how configure FreeRadius to extract this information and
> add it to the configure items for request ?


You need the correct values in the "ldap.attrmap" file. The default file
comes with (amongst other) mappings:

checkItem LM-Password lmPassword
checkItem NT-Password ntPassword

>
> A set clear password in ldap and still i have that in debug mode:
>
> Login incorrect: [rka/<no User-Password attribute>] - rka is my user
>
> BR,


You'll need to add the relevant mapping e.g. if your cleartext password
is in "clearPassword" you would use:

checkItem User-Password clearPassword

Modify as appropriate.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 09:55 PM.


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0