pam_ldap and Apple Password Server

From: Ian Vännman (ian.vannman@aftonbladet.se)
Date: Wed Sep 24 2003 - 06:36:45 EDT


We have set up a Solaris server running Solaris 5.8 to authenticate against
a Mac OS X Server running 10.2.x. On the Solaris machine we are using
pam_ldap and nss_ldap from PADL Software to achieve this.

It works really well, but we have run into a snag with some of our users.
Most of our users are set up with basic password on the OS X Server, that is
they are encoded using crypt and saved in the passwd attribute in Netinfo.

However, a few of them, who use remote home directories on Mac OS X client,
require Apple Password Server passwords. They can't authenticate on the
Solaris machine, unless we manually set the passwd attribute to their
password in crypt.

This is a very annoying workaround. Is there a way to get pam_ldap to
authenticate using the Apple Password server instead of the passwd
attribute?

Also, we presently create our users with a basic crypt password on the Mac
OS X Server using LDAP. Is there a way to create users with Apple Password
Server using LDAP?

Best regards,
Ian
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:27:10 EDT