Alan Lehman <[EMAIL PROTECTED]> wrote: > I think instructions for interfacing with Microsoft domains in some > manner is important. There are millions of people using Microsoft > servers and providing the means to authenticate users to an existing MS > domain would be very valuable to many users.
I agree. But so far, no one has contributed patches to allow this to work. FreeRADIUS *does* build under Cygwin, so it runs (sort of) under XP. > I looked briefly pam_smb, but as best as I could determine, it will > not work with AD. AFAIK, IAS is the only means to authenticate users to AD. I wonder why... Microsoft does supply an LDAP interface to AD, and it is possible to use it to do *some* kinds of authentication. But it's impossible to do anything other than PAP against AD, unless your name is "IAS". That's rude. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
