Technology Get the latest on technology, electronics and software…

IT: I need a RADIUS solution

Thread Tools
 
Old Jul 19, 2010 | 09:45 AM
  #1  
Billiam's Avatar
Thread Starter
Big Block go VROOOM!
 
Joined: Oct 2003
Posts: 8,578
Likes: 1
From: Chicago Burbs
IT: I need a RADIUS solution

Anyone well versed in RADIUS solutions? I’m looking for a Windows-based solution that will handle a multiple realm environment like this:

Realm A
A user enters just ‘username’ or ‘username@company.com’ and the server uses locally hosted Active Directory as the basis for authentication. This functionality alone can be handled by Microsoft IAS/NPS. We're actually already doing this, but we're not married to staying with it.

Realm B
A user enters ‘username@parentco.com’ and the server uses a native LDAP directory with different/independent accounts hosted at our Main Campus as the basis for authentication.

It looks like Freeradius may be able to accommodate this type of environment but a) it only runs on *nix and b) it appears to require the use of SAMBA for authenticating against the AD environment.

Another potential option would be for the “Realm B” portion to be a RADIUS proxy that passes the authentication to a RADIUS server hosted at our Main Campus. From what I can tell Microsoft IAS/NPS can act as a RADIUS proxy. What I can’t tell, however, is if it can act as a proxy for only one realm in a multiple realm setup. I don’t want to run two instances of IAS/NPS just to get the “local” side of things working.

Thoughts?
Reply
Old Jul 19, 2010 | 09:50 AM
  #2  
doopstr's Avatar
Team Owner
20 Year Member
Liked
Loved
Community Favorite
 
Joined: Jan 2001
Posts: 25,967
Likes: 2,685
From: Jersey
Wouldn't the single IAS be able to handle both realms if a trust existed between the two?
Reply
Old Jul 19, 2010 | 10:07 AM
  #3  
Billiam's Avatar
Thread Starter
Big Block go VROOOM!
 
Joined: Oct 2003
Posts: 8,578
Likes: 1
From: Chicago Burbs
The "far" side at our Main Campus is not AD. It is a 100% native LDAP directory (Sungard Luminis).
Reply
Old Jul 19, 2010 | 10:09 AM
  #4  
doopstr's Avatar
Team Owner
20 Year Member
Liked
Loved
Community Favorite
 
Joined: Jan 2001
Posts: 25,967
Likes: 2,685
From: Jersey
I believe you can setup external trusts to LDAP directories that are not AD. I've never tried it though.
Reply
Related Topics
Thread
Thread Starter
Forum
Replies
Last Post
cycdaniel
1G TSX Performance Parts & Modifications
8
Dec 17, 2019 10:58 AM
BoricuaTL
Car Parts for Sale
138
Apr 8, 2016 01:08 PM
DerrickW
3G TL Performance Parts & Modifications
9
Nov 15, 2015 05:52 PM
LoneRonin
3G TL Tires, Wheels & Suspension
2
Sep 28, 2015 09:11 AM
AcuraKidd
Non-Automotive & Motorcycle Sales
0
Sep 25, 2015 11:18 PM




All times are GMT -5. The time now is 01:49 PM.