Hi, Sorry about the late reply. I tried your suggestion, but without success. I don't know if I am using the right parameters in the users, the eap.conf and the radiusd.conf files. Have you any sample config? Or any suggested docs?
Many thanks Vitor -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Sandworm Sent: segunda-feira, 21 de Mar�o de 2005 2:16 To: [email protected] Subject: RE: Authenticate users from freeradius to a Windows 2000 AD -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 > -----Original Message----- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] On > Behalf Of Vitor Paiva da Silva > Sent: Saturday, 19 March 2005 2:58 AM > To: [email protected] > Subject: Authenticate users from freeradius to a Windows 2000 AD > > rlm_ldap: ldap_search() failed: Operations error > > rlm_ldap: search failed > > rlm_ldap: ldap_release_conn: Release Id: 0 > > modcall[authorize]: module "ldap" returns fail for request 0 > > modcall: group authorize returns fail for request 0 > This typically happens when AD referrals fail. In your LDAP configuration you need to turn off dereferencing and referrals. This is usually done by adding the following lines to /etc/openldap/ldap.conf on the FreeRadius box (which is the AD LDAP client in this case): deref never referrals no Regards -----BEGIN PGP SIGNATURE----- Note: This signature can be verified at https://www.hushtools.com/verify Version: Hush 2.4 wkYEARECAAYFAkI+LlYACgkQmw4BJyaatJ3fagCfbSRQwv8i98MUNtwdF7xpGuoXezUA oKwTzeO131L0BZJ/9sf4oig7rVJ4 =oh86 -----END PGP SIGNATURE----- - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

