Hi there Alex!

I was thinking of leaving Samba out of this entirely, and only using 
sssd-libwbclient as a backend for FreeRadius.

The problem I’m trying to solve here is a successful implementation of 
MS-CHAPv2 authentication in FreeRadius that DOES NOT use Samba’s ntlm_auth 
binary.

Since MS-CHAPv2 does not present clear text passwords, and instead gives us 
NtPasswordHash, I’m not able to use pam or krb5 authentication types.

-n

> On Dec 10, 2021, at 11:08 AM, Alexey Tikhonov <[email protected]> wrote:
>
> Hi,
>
> sssd-libwbclient was an "alternative" for winbinbd. It's not compatible with 
> modern versions of Samba.
>
> Or do you mean to keep smbd running with winbinbd and to use sssd-libwbclient 
> only for FreeRADIUS? I'm not sure if the API is still compatible and if 
> sssd-libwbclient implements everything required by FreeRADIUS.

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
sssd-users mailing list -- [email protected]
To unsubscribe send an email to [email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedorahosted.org/archives/list/[email protected]
Do not reply to spam on the list, report it: 
https://pagure.io/fedora-infrastructure

Reply via email to