FreeRadius LDAP with GSuite LDAP Help
-
Good evening!
Reaching out for help once again...
We use Gsuite for Education with a Pfsense and captive portal and authentication against Gsuite. All working as it should.
We are needing a radius server for an add-on appliance called EasyNac by Infoexpress for network access control, which requires an Active Directory or a radius server. Since we don't use any AD servers, A radius server will be used instead.
I have installed Freeradius on the Pfsense, and it is working as designed. I was able to authenticate against a local username on the Pfsense box via radius.
As of right now, we have the PF captive portal using Stunnel to authenticate through the GSuite LDAP, and it works. I saw somewhere you can bind the FreeRadius to the Stunnel but I can't find instructions for that.
I cannot get Freeradius to authenticate Gsuite LDAPS. looked all around for direct setup instructions for setting this and I had no luck yet finding anything to help.
Any suggests?
-
@msa1878 said in FreeRadius LDAP with GSuite LDAP Help:
bind the FreeRadius to the Stunnel
Did you look at these:
https://docs.netgate.com/pfsense/en/latest/packages/stunnel.html
https://docs.netgate.com/pfsense/en/latest/packages/freeradius.html
-
@nollipfsense said in FreeRadius LDAP with GSuite LDAP Help:
https://docs.netgate.com/pfsense/en/latest/packages/stunnel.html
Yes, I have seen all of these... but I can't find any info on how to bind Freeradius to an already functioning Gsuite Stunnel configuration.
-
Stunnel listens on localhost and forwards requests to dap.google.com so I would expect to point Freeradius at localhost on the appropriate port. As you do for LDAP auth directly: