Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 09 Jul 2002 01:19:03 -0600
From:      Ralph Forsythe <rforsythe@centerone.com>
To:        freebsd-isp@freebsd.org
Subject:   New list member ... and stupid radius questions
Message-ID:  <5.1.0.14.2.20020709010532.01b80e90@mail.centerone.com>

next in thread | raw e-mail | index | archive | help
Greetings all, I'm new to the list.  And out the door I need to ask some 
lame questions...

I am setting up a small ISP, and as my experience in the past has been 
under FreeBSD, I'm going with it here.  I will be using a 4.6-stable (just 
updated yesterday) system with a digiboard and a 3com modem chassis (not 
important really, but just FYI).

As for software, I'm planning on mgetty (current from the ports tree) 
handling the incoming calls.  Not a real issue there, the PPP config for 
that is straightforward enough and has been documented a hundred times.

However - I don't want to have this server authenticate from a secrets file 
or /etc/passwd.  We have another server which will handle mail and web 
hosting among other tasks, and I want it to serve as a central 
authentication repository.  I'm not hell bent on any auth protocol over 
another (encrypted transmission would be a big plus though) though the two 
I see most mentioned are RADIUS and LDAP.

What I have read suggests that LDAP is a pain in the butt to make work with 
pppd, and RADIUS is easier; however I have seen 20 different configs for 
this, some people saying pppd under FreeBSD hates RADIUS, some people 
saying it works, and that coupled with having spent the last 5 days 
building servers and troubleshooting various things has my head 
spinning.  I'm not a newbie with RADIUS but I've never set it up with pppd, 
so...

If someone can ignore the stupidity in this and maybe point me to some 
resources on how to get RADIUS auth working with pppd/mgetty under FreeBSD 
that they know work (i.e. I have searched Google and the archives, and have 
seen so many different things I don't know which way to go), I would really 
appreciate it!  Maybe I can save what little sanity I have left...  :)

Thanks!
- Ralph Forsythe
rforsythe@centerone.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-isp" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5.1.0.14.2.20020709010532.01b80e90>