> First off, is it neccessary to fill the dictionary table as well, or can
> the text version be used directly for that? More to the point, how do I
> tell radiusd to ONLY look in its sql table for authentication?
This is controlled like any other aunthentication module, via the
authenticate {} block in your radiusd.conf. If all you want is sql, then
only put the sql module in there.
> Second, is there any way to use crypted passwords in the SQL database?
> I'm keeping a fairly tight lid on security in most matters but plaintext
> passwords always make me nervous.
Use PAP exclusively for dialup. If you want to support CHAP for dialup,
passwords _must_ be cleartext. See the FAQ and list archives for more
details.
-Shawn
>
> Thanks for the software,
> -Shad
> --
> Rens Houben | opinions are mine
> Resident linux guru and sysadmin | if my employers have one
> Systemec Internet Services. |they'll tell you themselves
> PGP public key at http://suzaku.systemec.nl/shadur.key.asc
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
>
Shawn K. O'Shea
Sr. Unix Administrator
DSL.net, Inc.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html