Freeradius access over ldap

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen

Enable ldap

  • cd /etc/freeradius/3.0/mods-enabled
  • ln -s ../mods-available/ldap .

Certpath

/etc/freeradius/3.0/certs

Config ldap

  • cat /etc/freeradius/3.0/mods-enabled/ldap
 server = 'ldaps://waka.xinux.lan'
 identity = 'cn=admin,dc=xinux,dc=lan'
 password = sysadm
 ...
 base_dn = 'dc=xinux,dc=lan'
      tls {
            start_tls = yes
            ca_file = ${certdir}/xin-ca.crt
            certificate_file = ${certdir}/caprica.xinux.lan.crt
            private_key_file = ${certdir}/caprica.xinux.lan.key
       }
  ...