On 1/29/19 12:23 PM, Rob Crittenden wrote:
So what I think you'll have to do is create a separate LDAP system
account, details are in the LDAP howto on freeipa.org.
I stumbled across that sometime in the bleary hours of this morning.
Good to know that I was barking up the right tree.
And
Ian Pilcher via FreeIPA-users wrote:
> Continuing my adventures with FreeRADIUS ...
>
> It seems that there's no escaping the need to create a dedicated LDAP
> user for FreeRADIUS, so that it can see group membership information.
>
> I've already created a FreeIPA service -
>