Hi,

I'm trying to setup host-based 802.1x authentification for windows hosts 
against an old-style samba3/openldap domain  ( /*NOT*/ AD ).

Basically, computer identify itself with User-Name = host/COMPUTERNAME, 
while ldap needs
uid = computerame$

With

        if (User-Name =~ /host\/(.*)/i) {
                 update request {
                         Stripped-User-Name = "%{1}$";
                 }
         }

added in authorize group in packetfence-tunnel, Radius 802.1x auth is 
working. But unstripped User-Name is passed to packetfence, preventing 
it to match ldap user rules.

I tried to define User-Name the same way in many other places in 
packetfence or packetfence-tunnel, without success.

So, where do I need to rewrite User-Name for passing it to PacketFence, 
in radius conf files ? in packetfence.pm ?

Thanks

Denis Bonnenfant

------------------------------------------------------------------------------
Meet PCI DSS 3.0 Compliance Requirements with EventLog Analyzer
Achieve PCI DSS 3.0 Compliant Status with Out-of-the-box PCI DSS Reports
Are you Audit-Ready for PCI DSS 3.0 Compliance? Download White paper
Comply to PCI DSS 3.0 Requirement 10 and 11.5 with EventLog Analyzer
http://pubads.g.doubleclick.net/gampad/clk?id=154622311&iu=/4140/ostg.clktrk
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to