Tim Mooney írta:
PAM has hooks for this; they work about as well as the rest of PAM.
In your opinion, how well is that?
I recommend that use nss groups as the source db of the authorization,
and use pam_access for authorization.
As you can see, though, to fully function within this system,
Why not use nsswitch for authorization? I'm assuming it's available on
Solaris since Sun developed it (I don't have any Solaris boxes at the
moment). Basically all password file lookups are redirected to LDAP
via nss_ldap. It seems to me that authentication is best left to PAM,
while
Brian,
I agree with you. This is what I always recommend to clients.
Tim.
-Original Message-
From: Brian Davidson [mailto:[EMAIL PROTECTED]
Sent: 04 August 2003 16:47
To: [EMAIL PROTECTED]
Subject: Re: which krb5 PAM module on Solaris 8?
Why not use nsswitch for authorization? I'm
In regard to: Re: which krb5 PAM module on Solaris 8?, Sam Hartman said (at...:
Brian == Brian Davidson [EMAIL PROTECTED] writes:
Brian Why not use nsswitch for authorization? I'm assuming it's
Brian available on Solaris since Sun developed it (I don't have
Brian any Solaris boxes
There is also the pam_krb5 module under the PAM project @ sf.net which was
tested heavily under solaris.
http://sourceforge.net/projects/pam/ (Check the CVS tree)
The pam module there was the work of Nicolas Williams, Jacques A.
Vidrine, Steve Langasek, Frank Cusack and a little of myself. It
Tim Mooney írta:
All-
I'm looking for recommendations on which krb5 PAM module I should use
on a sparc box I'll be reinstalling with Solaris 2.8 in a couple weeks.
pam-krb5.sf.net. This is an enhanced version of RedHat's pam_krb5.
I will release rc8 in this weekend, it will contains many
GÁL == GÁL Balázs [EMAIL PROTECTED] writes:
GÁL Tim Mooney írta:
All- I'm looking for recommendations on which krb5 PAM module I
should use on a sparc box I'll be reinstalling with Solaris 2.8
in a couple weeks.
GÁL pam-krb5.sf.net. This is an enhanced version of RedHat's
Sam Hartman írta:
GÁL == GÁL Balázs [EMAIL PROTECTED] writes:
GÁL Tim Mooney írta:
All- I'm looking for recommendations on which krb5 PAM module I
should use on a sparc box I'll be reinstalling with Solaris 2.8
in a couple weeks.
GÁL pam-krb5.sf.net. This is an enhanced
Sam Hartman írta:
I think that the PAM module with the most potential is the one in the
Linux-PAM repository on sourceforge. I'm not sure it's really usable
in its current form.
In what state is it? :
gcc -c -fpic -g -O2 -I/usr/include -I/usr/include pam_krb5_auth.c
pam_krb5_auth.c:123:45: