1
22.7 Legacy Series / Freeradius plugin: Force user to change password on first login
« on: November 26, 2022, 03:23:13 pm »
I'm running OCserv for SSLVPN authentication with RADIUS on OPNsense 22.7.7
As authentication source am using an LDAP server. The setup is working fine and users can connect successfully using RADIUS+LDAP authentication and receive an IP address.
After I create the user account on the LDAP server I want force the user to change its assigned password on first login or if the account is already expired and he is trying to connect to VPN.
Is this possible to be done using Freeradius ?
I did not find any document or solution to explain if this can be done or if it is supported when using RADIUS+LDAP authentication for OCserv.
Thank you and kind regards,
As authentication source am using an LDAP server. The setup is working fine and users can connect successfully using RADIUS+LDAP authentication and receive an IP address.
After I create the user account on the LDAP server I want force the user to change its assigned password on first login or if the account is already expired and he is trying to connect to VPN.
Is this possible to be done using Freeradius ?
I did not find any document or solution to explain if this can be done or if it is supported when using RADIUS+LDAP authentication for OCserv.
Thank you and kind regards,