<html><body><p>Not sure if this helps, but at one point we had someone propose install instructions for moonshot and apache: <a href="https://review.openstack.org/#/c/163878/10/doc/source/extensions/abfab.rst">https://review.openstack.org/#/c/163878/10/doc/source/extensions/abfab.rst</a><br><br>Steve<br><br><img width="16" height="16" src="cid:1__=8FBBF5C0DFC5E4C08f9e8a93df938690918c8FB@" border="0" alt="Inactive hide details for "Van Leeuwen, Robert" ---2016/02/08 04:01:09 AM--->Now we are stuck at this point how to authenticate"><font color="#424282">"Van Leeuwen, Robert" ---2016/02/08 04:01:09 AM--->Now we are stuck at this point how to authenticate users via free radius. >Any help or pointers on</font><br><br><font size="2" color="#5F5F5F">From: </font><font size="2">"Van Leeuwen, Robert" <rovanleeuwen@ebay.com></font><br><font size="2" color="#5F5F5F">To: </font><font size="2">pratik dave <prtkdave@gmail.com></font><br><font size="2" color="#5F5F5F">Cc: </font><font size="2">"openstack@lists.openstack.org" <openstack@lists.openstack.org></font><br><font size="2" color="#5F5F5F">Date: </font><font size="2">2016/02/08 04:01 AM</font><br><font size="2" color="#5F5F5F">Subject: </font><font size="2">Re: [Openstack] Fwd: Need to integrate radius server with OpenStack</font><br><hr width="100%" size="2" align="left" noshade style="color:#8091A5; "><br><br><br><font face="Calibri">>Now we are stuck at this point how to authenticate users via free radius.</font><br><font face="Calibri">>Any help or pointers on this would be grateful.</font><br>
<p><font face="Calibri">Hi Pratik,</font><p><font face="Calibri">You can write your own keystone middleware to authenticate with.</font><br><br><font face="Calibri">There is a nice doc about that here: </font><br><a href="http://docs.openstack.org/developer/keystone/external-auth.html"><u><font color="#0000FF" face="Calibri">http://docs.openstack.org/developer/keystone/external-auth.html</font></u></a><br><br><font face="Calibri">Note that if you use external_auth as in the example it will only take over the authentication:</font><br><font face="Calibri">The user will still need to exist in keystone and roles need to be assigned in the keystone backend.</font><br><br><font face="Calibri">For a "fully integrated” solution you will have to look at LDAP afaik.</font><br><br><font face="Calibri">Cheers,</font><br><font face="Calibri">Robert van Leeuwen</font><tt>_______________________________________________<br>Mailing list: </tt><tt><a href="http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack">http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack</a></tt><tt><br>Post to : openstack@lists.openstack.org<br>Unsubscribe : </tt><tt><a href="http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack">http://lists.openstack.org/cgi-bin/mailman/listinfo/openstack</a></tt><tt><br></tt><br><br><BR>
</body></html>