[389-users] Re: Change authentication for LDAP

2019-03-25 Thread Michael Ströder
On 3/25/19 2:16 AM, William Brown wrote: > * To servers > > Use SSH key distribution in LDAP via SSSD. Or better use (temporary) OpenSSH certificates. > Finally, it is my personal opinion (IE not the opinion of the project > or my employer) that kerberos should be avoided as it introduces >

[389-users] Re: Change authentication for LDAP

2019-03-24 Thread William Brown
> On 22 Mar 2019, at 23:46, Zombie fork wrote: > > Hi, > We are trying to explore new methods of authentication. We want to move > away from the traditional password based authentication to a more secure > method like using Certificates , keys etc. > > Is it possible to implement this?

[389-users] Re: Change authentication for LDAP

2019-03-22 Thread Mark Reynolds
Hi, On 3/22/19 9:46 AM, Zombie fork wrote: Hi,     We are trying to explore new methods of authentication. We want to move away from the traditional password based authentication to a more secure method like using Certificates , keys etc. Is it possible to implement this? What