-------- Message transféré --------
Sujet : Re: [PacketFence-users] Migrating radius ldap (non AD) auth from 4.6 to 6.4
Date :  Thu, 19 Jan 2017 09:59:41 +0100
De :    Denis Bonnenfant <[email protected]>
Pour :  [email protected]



Le 17/01/2017 à 22:34, Fabrice Durand a écrit :
Hello Denis,

so first you added it in packetfence-tunnel (which is correct)


I solved my problem :

As Auth will be made directly from ldap nt-password attribute and not by 
ntlm_auth,

packetfence-tunnel needs these lines in authorize section :


        #
        #  The ldap module reads passwords from the LDAP database.
        -ldap
        if (ok) {
            update control {
                MS-CHAP-Use-NTLM-Auth := No
            }
        }


maybe it can be done in some better ways, or in other places, but as all the 
conf layout chaged with freeradius 3.x, i'm not skilled to find how...

Denis

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to