Search the Site

My Social
Meta
Powered by Squarespace
« Windows Mobile 5..... aaaaargh | Main | First HD-DVD now Blu-Ray 'cracked' »
Thursday
Jan252007

FreeRADIUS

Most companies/institutions use Windows clients (Windows 2000, XP), but their backend might be different. There's the Microsoft Active Directory, [cough]Novell eDirectory (former NDS)[/cough], or a more Generic LDAP (like the SUN Directory ONE).

The problem with network authentication with the use of Microsoft clients is that the authentication process uses MS-CHAPv2. This is a Microsoft mechanisme for authenticating. This means that the RADIUS server used for authenticating should also be able to authenticate using MS-CHAPv2. The Internet Authentication Service from Microsoft is pretty MS only, so not much of a help with other backends. So there's a need for a RADIUS server which talks to different backends. One option is the great RADIATOR RADIUS server. It's fully customizable, but not for free.

Today, I stumbled on FreeRADIUS. This RADIUS server is free (duh), and is also fully customizable. Downside is that you need to compile the software yourself, and the documentation is not that great.
Tried to compile/install it on my FreeBSD 'server', but make was missing. So I downloaded make, and installed it, but the install script kept saying that make wasn't installed.... Well I guess that's one of the reasons why Linux won't be adopted by the masses soon. Spent about an hour to fix it, but I just have to give up.

Well, time to download a precompiles Win32 version from freeradius.net

Reader Comments

There are no comments for this journal entry. To create a new comment, use the form below.

PostPost a New Comment

Enter your information below to add a new comment.

My response is on my own website »
Author Email (optional):
Author URL (optional):
Post:
 
Some HTML allowed: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <code> <em> <i> <strike> <strong>