On 09/06/2011, at 11:52 PM, Sam Hartman wrote:
>>>>>> "Luke" == Luke Howard <[log in to unmask]> writes:
>
>>> The authenticatino in Moonshot will be via EAP. That means you
>>> won't get a username or password (at least under the interesting
>>> cases, although I guess we *could* backend PAP into an IDP if we
>>> really wanted.)
>
> Luke> But you can get a username on the EAP server, right? And it's
> Luke> possible to get this via a RADIUS module and do something
> Luke> useful with it -- my rlm_mspac module does just this.
>
> You're not entirely likely to get a password though.
Oh, noted. So yes, I don't think there are any practical cases where it's possible to pass-through the authentication to the IdP. I never understood that as being the aim.
-- Luke
|