Re: LDAP and/or SSH?

From: Richard E. Silverman (res_at_qoxp.net)
Date: 07/25/03


Date: 25 Jul 2003 16:28:07 -0400


This is just repeating what you wrote before, which already didn't make
sense once.

> > cover those gaps - example -> as passwords would be handled by LDAP,
> > would .rhosts and .netrc on the UX side still be an issue?

*What* passwords would be "handled" by LDAP? Do you mean you intend to
configure sshd to do password authentication via LDAP? Maybe you mean
that, maybe you mean something else -- I can't tell, which is why I asked
you to elaborate. Even if that's the case -- what does any of this have
to do with ".rhosts and .netrc"? These files are not relevant to password
authentication, regardless of how SSH happens to check the password, so I
don't understand what you're asking.

> > Also with LDAP would passwords be sent in the clear?

What passwords? LDAP authentication? SSH authentication? Again, what
does this have to do with SSH, where is LDAP situated in your hypothetical
question, and what exactly are you asking?

-- 
  Richard Silverman
  res@qoxp.net


Relevant Pages

  • Re: OpenSSH and pam_radius_auth.so
    ... This indicates that password authentication was attempted. ... It appears as if sshd is not displaying the second ... RADIUS server tries again 2 more times before giving up. ... the most likely problem is that your SSH *client* isn't ...
    (comp.security.ssh)
  • Re: Directory Services, LDAP or similar
    ... In other projects, we managed the user authentication by creating tables that define all users and its allowed capacities, then the application queryies that data to verify if a user has access to some feature or not. ... The above ID and password are sent to the service at login time. ... They are using Novell eDirectory at the enterprise level; yes it's LDAP. ... We already do that for three different DB servers; ...
    (borland.public.delphi.non-technical)
  • Re: noob on slapd with sasl errors
    ... If I may share advice based on my own trials & tribulations with LDAP ... people who need network authentication and the current state of ... context of network authentication, LDAP really is just a protocol used ... I have no idea how sasl works and why it is needed here, or even more, ...
    (Ubuntu)
  • Re: Directory Services, LDAP or similar
    ... we managed the user authentication by creating tables ... The above ID and password are sent to the service at login ... Novell eDirectory at the enterprise level; yes it's LDAP. ... servers; ...
    (borland.public.delphi.non-technical)
  • Re: Recommended strategy for providing access to web apps via Inte
    ... LDAP is an ugly solution on the public internet, ... These federated authentication protocols are designed to address these ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ...
    (microsoft.public.windows.server.active_directory)