| UNIX/Linux Forum Archives · Rules and Guidelines · Disclaimer |
Help
Search
Members
Calendar
|
| Welcome Guest ( Log In | Register ) | Resend Validation Email |
![]() ![]() ![]() |
| pfinder |
Posted: Feb 15 2003, 11:55 AM
|
|
User Level: 3 ![]() ![]() ![]() Group: Members Posts: 36 Member No.: 3 Joined: 14-February 03 |
Playing with LDAP has intrested me for a while but I have never got round to getting a server going. I hope to fix this in the next few weeks but for the moment im still reading the LDAP HOWTO there is a lot of stuff I still have to get my head around (the config file for one) but I'll get there.
I was wondering what fun other people had had with LDAP, any one used it for windows authentication? Any one played with the versions of samba that use LDAP so they can authenticate windows 2kand xp systems? Richard |
| fishsponge |
Posted: Feb 15 2003, 12:16 PM
|
|
Administrator ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Admin Posts: 679 Member No.: 1 Joined: 13-February 03 |
i have never touched LDAP, but i have quite a nice NIS setup running here at home.... but enough about NIS, this is an LDAP topic.
why would you want to have LDAP authenticate for windoze? in fact..... why would you want windoze? i reckon you are asking on behalf of someone else.... i can't believe for a minute that u have a windoze machine! lol :D |
| sleazyrob |
|
||
|
User Level: 4 ![]() ![]() ![]() ![]() Group: Members Posts: 66 Member No.: 8 Joined: 17-February 03 |
Do you mean to authenticate the *ix system against the windows domain or the windows system against the *ix domain? For those that don't know "Active Directory" = crappy implementation of LDAP :P |
||
| bluehat72 |
Posted: Feb 17 2003, 05:27 PM
|
|
Newbie ![]() Group: Members Posts: 1 Member No.: 10 Joined: 17-February 03 |
If you need to authenticate solaris users with LDAP, It worked perfectly fine for me. Initially I architected it for centralized authenticaiotn but unfortunately password aging still is not working with Solaris 8.0. According to Sun it works with S9.
Let me know if you need any help with that. Jamal |
| pfinder |
Posted: Mar 10 2003, 10:52 PM
|
|
User Level: 3 ![]() ![]() ![]() Group: Members Posts: 36 Member No.: 3 Joined: 14-February 03 |
I'm looking at getting some centeralised authentication working here, As I have be been told that nis dosen't scale well (not that this setup will be getting larg enought for me to find that out) I wanted to learn somthing that I can use again later on a much larger scale if neccery, which left a choice of LDAP or Kerberos Auth, Kerberos is probably more senciable from a shear secrurity point of view but it is hard to learn I understand, so given that I though LDAP, Particularly as there are some intresting projects about to combine Samba and openLDAP to auth windows systems so this could be doublely usefull.
So unless any one can convince me that I'm wrong I will start to play with my LDAP server and see if I can work out how to do LDAP authentication and home dir serving (ok nfs will do the serving but LDAP will have to point the system to the correct place) thats it for now |
| fishsponge |
Posted: Mar 11 2003, 03:56 PM
|
|
Administrator ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Admin Posts: 679 Member No.: 1 Joined: 13-February 03 |
NIS does scale quite well from my experience, but it is rather insecure, and i certainly wouldn't put it on an internet-facing machine by choice.
I'm going to install LDAP at home when i have time, but i think i'm gonna let you play with it first, so i know what to expect!! :D |
| pfinder |
Posted: Mar 12 2003, 08:20 PM
|
|
User Level: 3 ![]() ![]() ![]() Group: Members Posts: 36 Member No.: 3 Joined: 14-February 03 |
when I say scale well I mean for 100 - 200 clients (and I know there are setups with far more)
Im not sure how secure ldap is. I assune Kerberos is best for security |
| fishsponge |
Posted: Mar 13 2003, 12:13 PM
|
|
Administrator ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Admin Posts: 679 Member No.: 1 Joined: 13-February 03 |
well i know of setups that use NIS across a few thousand machines, and they work well!
As for security, LDAP is great for authentication, and LDAP is also far more secure than NIS. |
| fishsponge |
Posted: Mar 14 2003, 12:22 PM
|
|
Administrator ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() Group: Admin Posts: 679 Member No.: 1 Joined: 13-February 03 |
ok... i'm trying to install LDAP, but i can't find the packages i need! i assumed there would be a package called "LDAP" or something, but there doesn't appear to be, and i've been searching the apt-cache for a while now! any suggestions??
|
![]() |
![]() ![]() ![]() |