Radius Extensions for LDAP.

2007-12-24 20:27:00

This is a multi-part message in MIME format.
--------------3EB205A10B091EC10E010589
Content-Type: text/plain; charset=us-ascii; x-mac-type="54455854"; x-mac-creator="4D4F5353"
Content-Transfer-Encoding: 7bit

Good day!

I need some assistance with the radius.mapping file for the Solaris
Extensions for LDAP.

I have dsradius installed and configured. It works for users that have
the necessary attributes. My problem is that I now what to separate via
a group who has access through the NAS device.

My NAS device is named 'NASusr,o=starkey.com,c=us.
My group that should be allowed access through 'NASusr' is
'cn=RA_domestic,ou=groups,o=starkey.com,c=us'.
No one is currently a member of this group but my test user can still
successfully login.
Following the documentation is confusing because it is not real clear
and I interpret it as being contradictory. I have tried each method in
the documentation (edit file and console) but can not get it to work.
The eventual goal to to have three NAS devices with three groups. Each
group having access through a specific NAS.
I have a case open with iPlanet but the tech is not making any progress.

As anyone gotten this to work? If so can you provide insight on how
your radius.mapping file is configured?

Thanks,
joe.

--------------3EB205A10B091EC10E010589
Content-Type: text/x-vcard; charset=us-ascii;
name="joe_honnold.vcf"
Content-Transfer-Encoding: 7bit
Content-Description: Card for honnold
Content-Disposition: attachment;
filename="joe_honnold.vcf"

begin:vcard
n:Honnold;Joe
x-mozilla-html:FALSE
org:Starkey Labs, Inc
adr:;;;;;;
version:2.1
email;internet:honnold at starkey.com
title:Lead Systems Administrator
x-mozilla-cpt:;1
fn:Joe Honnold
end:vcard

--------------3EB205A10B091EC10E010589--

Comments

Got something to say?

You must be logged in to post a comment.