|
Re: RADIUS + LDAP + SSL: msg#00910freeradius.user
> I realize the second bind is for authentication. However, it's trying > to bind as Usuari instead of the numeric UserID mentioned elsewhere > in your log. It looks like this might be related to some sort of group > authentication. It also looks like the LDAP bind doesn't return failure, > but simply times out. (Note there is no mention of LDAP returning, just > the modcall: group authtype returns reject). Yes, It is possible... When I access to my LDAP server as https://ldap.server.com:636 I must install a CA certficate o selfsigned certificated onto client in order to access. On FreeRadius I haven't configured this (I don't kwno how). I think modcall returns reject, because it can't authenticate SSL certficate presented by LDAP server. Anyone has been able to use Radius + SSL + LDAP using FreeRadius. ? ______________________________________ Paco Orozco (Francisco.Orozco@xxxxxxxxx) Divisió de Telecomunicacions UPCNet Edifici Vèrtex - Pl. Eusebi Güell, 6 Telèfon centraleta: 93.40.11600 - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html |
|
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| Previous by Date: | LEAP exchanges: 00910, Artur Hecker |
|---|---|
| Next by Date: | Re: Missing nas->strvalue in add_nas_attr, bad EAP request ID: 00910, Alan DeKok |
| Previous by Thread: | Re: RADIUS + LDAP + SSLi: 00910, Owen DeLong |
| Next by Thread: | RE: RADIUS + LDAP + SSL: 00910, Ron Wahler |
| Indexes: | [Date] [Thread] [Top] [All Lists] |
| News | FAQ | advertise |