Hi,
you could include the samba schema in the ldap server using
the ntPassword attribute for password.
Use "smbencrypt [string]" to generate a NT Hash for testing.
On samba site you should find more about automating this step in ldap-pdc docs.
Better than nothing..
Bye
Giosu�



At 10.02 26/11/2003 +0100, you wrote:
Greetings to all the list readers,

Running freeradius 0.9.3 and trying to make MS-CHAP work with LDAP, the
setup is following:

I have clients connecting to a pptp server with MPPE. MS-CHAPv2 is
required for MPPE to work. Now since I have a LDAP database with all
the users which is also used for other purposes i tought it would be
very nice to use it for VPN access also. Now here is the problem: the
userPassword in the LDAP database is SHA1 encrypted and MS-CHAP need
cleartext passwords and of course this is not working, is there any
way of making this work without having cleartext passwords in LDAP ?

Thanks in advance.

--
Andrej Brkic
Fakultet Prometnih Znanosti, Zagreb, Croatia
E-mail: [EMAIL PROTECTED]

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Presidio I.T.M. Facolta' di Lettere Universita' degli Studi di Trento Via S.Croce 65 38100 Trento Tel. +-39 461/881745


Per favore non mandatemi allegati in Word o PowerPoint.
Si veda http://www.fsf.org/philosophy/no-word-attachments.html



- List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to