Authentication server fallback

  • I've looked around but can't seem to find an answer to this…

    If I set pfSense to authenticate logins to the  webGUI via an AD domain, what happens if this AD domain isn't contactable? Does it fall back to local users on pfSense?

  • Yes, they will fallback to local users when the LDAP server specified for login doesn't work.

    This came in handy earlier this week when the certificate on our domain controller expired and it couldn't complete the LDAP over SSL bind correctly. Put in username admin and the password that we had changed it to and updated the appropriate information

Log in to reply