
May 12th, 2004, 10:23 AM
|
|
TANSTAAFL
|
|
Join Date: Mar 2002
Location: chair
|
|
config radius.conf
Code:
ldap {
server = "x.x.x.x"
port = 636
identity= "cn=ldapuser,dc=domain,dc=com"
password = ldapuser_pw
basedn = "dc=domain,dc=com"
#for ssl conns
tls_cacertfile = /usr/local/ssl/cert/cert.pem
#default filter = "(uid=%{Stripped-User-Name:-%{User-Name}})"
#AD Filter
filter = "(&(samaccountname=%{user-name}))"
start_tls = no
# default_profile = "cn=radprofile,ou=dialup,o=My Org,c=UA"
# profile_attribute = "radiusProfileDn"
# access_attr = "dialupAccess"
# Mapping of RADIUS dictionary attributes to LDAP
# directory attributes.
dictionary_mapping = ${raddbdir}/ldap.attrmap
ldap_connections_number = 5
# password_header = "{clear}"
# password_attribute = userPassword
# groupname_attribute = cn
# groupmembership_filter = "(|(&(objectClass=GroupOfNames)(member=%{Ldap-UserDn}))(&(objectClass=GroupOfUniqueNames)(uniquemember=%{Ldap-UserDn})))"
# groupmembership_attribute = radiusGroupName
timeout = 5
timelimit = 10
net_timeout = 5
# compare_check_items = yes
# access_attr_used_for_allow = yes
}
|