Matthieu Lazaro wrote: > No, I have set them up to checkItems: I agree with Ivan here: don't do this.
> I inspired my configuration based on "man 5 users" and I didn't find an > FAQ article that covers using policies with an LDAP backend. There is a FAQ entry for "it doesn't work". > rlm_ldap manual covers the options to use with the ldap module like > server , tls binding, basic filters, etc... not " how to use extended > ldap attributes based on the content of the RADIUS-LDAPv3.schema". Exactly. It describes how the LDAP module works. It does NOT describe how to implement complex policies that cannot be implemented with the LDAP module. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

