On Mon, 18 Nov 2002, Ajai Khattri wrote:
> After switching from a "regular" freeradius, to a new version using LDAP as
> the backend we are having some problems. Specifically, users can normally
> authenticate with "@domain.com" suffix but now this doesn't work. Do I need
> to add a realm (and make it strip[ the suffix) or do I need to add an extra
> field in the LDAP database to cover this situation?
>
> --
> .jA
> repoleveD \ .nimdA smetsyS
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
You need to have the realm module included in your authorize section and
configure a search filter like this one for the ldap module:
filter = "(uid=%{Stripped-User-Name:-%{User-Name}})"
--
Kostas Kalevras Network Operations Center
[EMAIL PROTECTED] National Technical University of Athens, Greece
Work Phone: +30 210 7721861
'Go back to the shadow' Gandalf
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html