Operating System - HP-UX
1819870 Members
2645 Online
109607 Solutions
New Discussion юеВ

AAA Server (RADIUS) with LDAP

 
Luis Valle
New Member

AAA Server (RADIUS) with LDAP

Hi,
I installed a AAA Server, the user list and passwords were loaded to the users file located in /opt/hpws/tomcat/aaa/aaalog/config/,
then, the requirement was that the users must be stored in a Directory Server.
I used Netscape DS 6 and installed in the same server, but AAA Server doesn't authenticate.
Does anyone have configured AAA Server with LDAP?
Thanks,
Luis
4 REPLIES 4
R. Sri Ram Kishore_1
Respected Contributor

Re: AAA Server (RADIUS) with LDAP

Hi Luis,

Check if this doc helps:
http://docs.hp.com/hpux/onlinedocs/T1428-90025/00/00/57-con.html

Regards,
Sri Ram
"What goes up must come down. Ask any system administrator."
Luis Valle
New Member

Re: AAA Server (RADIUS) with LDAP

Thanks Sri Ram,
But actually the fact is that I can't find the way to test the connection to the Directory Server (is in the same server),
and the AAA continues authenticating in the users file, even though the "authfile" is configured to look the DS.
Luis.
Narasimha Murthy
Occasional Advisor

Re: AAA Server (RADIUS) with LDAP

Hi Luis

/opt/hpws/tomcat/aaa/aaalog/config is temprorary file used by Server Manager(Administrator GUI).This file should not be edited manually.

Using Server Manager you should edit the server configuration. The server configuration is saved in /etc/opt/aaa/ directory.

HP-UX AAA Server is certified and tested with Netscape DS 6. Verify the configuration or post the steps you used for
configuring LDAP realm in case you are not
successful.

If you are configuring AAA Server to handle only 5000 or lesser user , you can use flat file as user storage instead of LDAP.

The manual has a section on "Configruing realm for ProLDAP using Server Manager" as
you may already be aware of. Make sure
the schema files provided along with AAA
Server product (in /opt/aaa/examples/proldap/) is loaded successfully by netscape directory server.

Best Regards
Murthy


Believe and Succeed
Luis Valle
New Member

Re: AAA Server (RADIUS) with LDAP

The configuration was fine. Because some weird reason it worked for me deleting all the realms, and creating them all again.
Before to do that it always connected to the users file. Very, very weird. Now is OK.
Thanks to all.
Luis.