you could include the samba schema in the ldap server using
the ntPassword attribute for password.
Use "smbencrypt [string]" to generate a NT Hash for testing.
On samba site you should find more about automating this step in ldap-pdc docs.
Better than nothing..
Bye
Giosu�
At 10.02 26/11/2003 +0100, you wrote:
Greetings to all the list readers,
Running freeradius 0.9.3 and trying to make MS-CHAP work with LDAP, the setup is following:
I have clients connecting to a pptp server with MPPE. MS-CHAPv2 is required for MPPE to work. Now since I have a LDAP database with all the users which is also used for other purposes i tought it would be very nice to use it for VPN access also. Now here is the problem: the userPassword in the LDAP database is SHA1 encrypted and MS-CHAP need cleartext passwords and of course this is not working, is there any way of making this work without having cleartext passwords in LDAP ?
Thanks in advance.
-- Andrej Brkic Fakultet Prometnih Znanosti, Zagreb, Croatia E-mail: [EMAIL PROTECTED]
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Presidio I.T.M. Facolta' di Lettere Universita' degli Studi di Trento Via S.Croce 65 38100 Trento Tel. +-39 461/881745
Per favore non mandatemi allegati in Word o PowerPoint.
Si veda http://www.fsf.org/philosophy/no-word-attachments.html
- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
