Distributed Logins in Solaris / Linux environment...

From: Darren Honeyball (MList) (mlist@spod.net)
Date: Fri Mar 21 2003 - 04:47:43 EST


Hi,

I'm looking to replace our current NIS environments with a single centrally
managed service... I have a top level domain, and several sub-domains e.g.:

domain.com
sub1.domain.com
sub2.domain.com

And I'd like users added to domain.com to be able to login to hosts within
sub1 and sub2 - but I want users in sub1 and sub2 to only be able to login
to hosts within their respective domains.

To take this a step further, I'd like to be able to restrict users within
any of the domains to only be able to login into hosts for which they are
granted permission...

So far I've been looking at LDAP and Kerberos, but just wondered what other
peoples thoughts / experiences are with this sort of granular login
authentication within a mixed Solaris / Linux environment (And what would be
really nice would be to plug our Win2K domains into the same auth :) but
that's not a show stopper).

TIA,

Darren
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:26:02 EDT