[Samba] radius auth to samba

David Bear dwbear75 at gmail.com
Mon Jun 30 20:45:15 MDT 2014


This hurts because we only have 1 DC -- and don't plan on adding member
servers. We will add 2 more DC's for replication to remote sites. The DC is
only doing samba though -- just as a AD DC.


On Mon, Jun 30, 2014 at 7:21 PM, Andrew Bartlett <abartlet at samba.org> wrote:

> On Mon, 2014-06-30 at 19:17 -0700, David Bear wrote:
> > I want to have samba be the back end provider for authentication to a
> > radius server. I found
> > https://wiki.samba.org/index.php/VPN_Single_SignOn_with_Samba_AD
> >
> > and wanted to see if this is 'current' and works with samba 4.1.8 -- or
> if
> > anyone is using it.
> >
> > I want to use RADIUS authentication on a firewall and have Samba be the
> > source for the user accounts. I am using a pfsense firewall. Anyone
> > pointers would be greatly appreciated.
>
> It looks reasonable to me, but I suggest running radius, ntlm_auth and
> winbindd on a member server, not on your DC.
>
> Andrew Bartlett
>
> --
> Andrew Bartlett
> http://samba.org/~abartlet/
> Authentication Developer, Samba Team  http://samba.org
> Samba Developer, Catalyst IT
> http://catalyst.net.nz/services/samba
>
>
>
>
>


-- 
David Bear
mobile: (602) 903-6476


More information about the samba mailing list