Re: [SOLVED]LDAP authentication allowed if User Object does not exist.

2007-02-25 Thread Eric Belcher
HI, I solved my own problem and thought someone else might like the solution. As I followed the Novell Freeradius integration notes, I had check items disabled. If I enabled this, and modified the ldap.attrmap to suit just those elements I want to check, if the user does not exist, the

Re: LDAP authentication allowed if User Object does not exist.

2007-02-23 Thread Alan DeKok
Eric Belcher wrote: Each student is issued with a certificate that is used to authenticate him to the radius server. The certificate name is his MAC address. A corresponding NDS account exists for this MAC address. I presume that's with EAP-TLS? However, I have found a flaw I can't seem to

LDAP authentication allowed if User Object does not exist.

2007-02-21 Thread Eric Belcher
Hi, I'm using freeradius on a SUSE 10 server. I'm using it to authenticate WPA2 wireless clients to Novell eDirectory. There is a twofold process. Being a school security is quite an issue. Each student is issued with a certificate that is used to authenticate him to the radius server. The