Alan Lehman <[EMAIL PROTECTED]> wrote:
> I think instructions for interfacing with Microsoft domains in some 
> manner is important. There are millions of people using Microsoft 
> servers and providing the means to authenticate users to an existing MS 
> domain would be very valuable to many users.

  I agree.  But so far, no one has contributed patches to allow this
to work.

  FreeRADIUS *does* build under Cygwin, so it runs (sort of) under
XP.

>  I looked briefly pam_smb, but as best as I could determine, it will 
> not work with AD. AFAIK, IAS is the only means to authenticate users to AD.

  I wonder why...

  Microsoft does supply an LDAP interface to AD, and it is possible to
use it to do *some* kinds of authentication.  But it's impossible to
do anything other than PAP against AD, unless your name is "IAS".
That's rude.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to