Hi, > So my question, and I know that there is a caveat about a cleartext > password being required for LDAP authentication, is: > Can I make a request to freeradius that gets passed to LDAP but only > requires the password to be checked against an attribute of the username, > NOT the real LDAP password.
Modify ldap.attrmap so that _your_ attribute is mapped into User-Name, not the default one. Stefan -- Stefan WINTER Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et de la Recherche - Ingénieur de recherche 6, rue Richard Coudenhove-Kalergi L-1359 Luxembourg - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

