RE: nis : how to avoid user1 becoming user2 using local root ?

From: Toni Heinonen (Toni.Heinonen_at_teleware.fi)
Date: 04/02/04

  • Next message: Arno van Amersfoort: "Re: iptables firewall script for debian-woody, 2.4.24"
    Date: Fri, 2 Apr 2004 11:34:27 +0300
    To: "Frank Burkhardt" <fbo2@gmx.net>, <focus-linux@securityfocus.com>
    
    

    > to everyone. The problem is the NFS-server trusting UIDs on remote
    > computers.

    Yes, but by using LDAP you get a consistend UID space all over your network, and user1 (1001) and user2 (1002) are the same users on each machine. Yes, this is the solution to the NFS-server trusting UIDs, but it also means you have to trust each computer.

    Or you might as well use winbind instead of LDAP and get the user information from a domain.


  • Next message: Arno van Amersfoort: "Re: iptables firewall script for debian-woody, 2.4.24"

    Relevant Pages

    • RE: Desperate for assistance
      ... I wouldn't advise calling Norton and asking them such technical questions. ... Remote support online pays their techs notoriously low wages. ... When I click on Norton under network, ... computers to connect remotely to my computer? ...
      (microsoft.public.security)
    • Re: Remote Desktop Users and Least User Rights
      ... user accounts (no administrative rights on the local machine). ... the Administrators group, the list of authorized remote users (My ... Remote tab> Select Remote Users) gets wiped out. ... You can create/link a new GPO at the appropriate OU where your computers ...
      (microsoft.public.windowsxp.security_admin)
    • RE: Remote Administrator 2.x: highly possible remote hole or back door
      ... This *does not* automatically mean that radmin is insecure. ... settings for remote ... Affected computers have different ... There are Windows 98 as well as Windows 2000 ...
      (Bugtraq)
    • RE: VBScript: Remote Desktop Disconnected
      ... ISA is allowing OUTBOUND port 4125 through the "SBS RWW Inbound Access ... I have checked the box "Remote Web Workplace". ... 3)A network error might have occurred while establishing the connection. ... client works from any computers in the LAN. ...
      (microsoft.public.windows.server.sbs)
    • Re: Connecting a remote workstation to a domain
      ... then ship to the remote office but the remote office computers were ... do this using a profile pre-configured on the server LAN then copied ... Make sure users understand that they should not log into multiple computers ...
      (microsoft.public.windows.server.sbs)