Dear All, Currently I'm running freeradius with mysql for storing user data. I want to migrate all this to LDAP. I need a couple of hints: in current setup I'm using a lot of cisco-AV-pairs attribute for defining access-list per user/group basis, idle-timeout, ip-pool etc.
How whould I make it with LDAP? I've added to slapd.conf include /etc/ldap/schema/RADIUS-LDAPv3.schema and now can use radius attributes with ldap, but I just don't get how to use cisco-avpairs. I think probably with radiusVSAattribute from ldapv3.schema or ahould I write my own schema extension? PS: I've read ldap-howto on the net but it just mentions that if your ldap server is setup for posix account that's enough. I think my question is more ldap specific. ? -- Best regards, Alexey Chetroi --- Smile... Tomorrow will be worse. (c) Murphy's law - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
