PLEX86  x86- Virtual Machine (VM) Program
 Plex86  |  CVS  |  Mailing List  |  Download  |  Linux  |  Newsgroups

LDAP for pbuttwords ONLY


Your Ad Here

Your Ad Here

I run a Linux file and web server for a small unit of a larger university. The university maintains an LDAP server that has all faculty, staff, and students in it, and includes their main pbuttword which is used for e-mail and other online services.

What I would like to do is configure Linux on the machine so that already-existing users configured inetc-pbuttwd andetc-shadow could use their university pbuttword for shell logins and Samba access, but that all other configuration settings, such as which groups they are in, the groups themselves, etc., would continue to be maintained locally on our Linux server. If I want to grant another user access, I would like to simply be able to add them into our server, being careful to give them the same login name as their existing campus username, set their group memberships and so on for our server, and then allow them to log in using their LDAP-authenticated pbuttword.

Securing a linux box for online shopping TIA 746
Roadster3043 Risk 1: work as root by default. Definite nono, still seems to be a regular problem for many. If you have to switch to root mode too...
Securing a linux box for online shopping TIA 747
On Fri, 31 Mar 2006 06:49:57 -0600, Roadster3043 Not running as root except to do admin work. I buttume you have enabled a firewall to block all incomming connections. I have a...

But, all the configuration examples that I have seen basically require you to turn over administration of users completely over to LDAP, with the exception of certain accounts which you can select to completely maintain locally (including the pbuttword). I want the middle ground, in which existence of, and group membership, shell setting, name, etc., for the users is managed locally on the machine, and only the pbuttword is authenticated with LDAP.

The university IT department, which maintains the LDAP server, knows nothing of the particular groups and access settings that I want to make on our unit's server, and I would prefer to leave it that way.

Any ideas? Have I missed something obvious here?



Your Ad Here

List | Previous | Next

Securing a linux box for online shopping TIA 746

Linux groups from Newsgroups

The #1 Usenet Provider on the Internet

CKERP Open Source ERPCRM Software v.0.18.1 released