Backk to the single sign-on problem with Active Directory and RHEL 5



OK, I've got the RHEL 5 box registered in the Active Directory Domain,
which we will call "FOO", nad which has the Active Directory name of
"FOO.COM"

* I've used the RedHat "system-config-authentication" tool register
the machine using Winbind, and temporarily set all Winbind users to
have the shell /bin/bash.

* I can login with the username FOO\user, and by tweaking smb.conf can
log in with the bare username "foo".

* I've used the "net ads keytab" to set up a local keytab.

* I've also installed the "Quest" version of Putty, to allow Kerberos
based logins.

* I've modified /etc/ssh/sshd_config to allow GSSAPI logins.

What next? I'm a little confused by the necessary Putty settings, and
not sure on the server side at a console login how to log in at the
console, check out the appropriate Kerberos keys, and use them to log
in password free to similar enabled RHEL servers. What I really wnat
this for is Subversion access over SSH, to avoid having to do the SSH
key management fun and games.
.



Relevant Pages

  • Re: Is_Member problem : Does user belong to custom Group
    ... In active directory: 1 - Created in Active directory a Windows group named ... 'MyDomainName/MyApplReadOnly' as Login Name and the same as User ... We can create a ROLE in the database and add the users. ...
    (microsoft.public.sqlserver.security)
  • Re: Is_Member problem : Does user belong to custom Group
    ... - Added in Security/Logins the windows Group 'MyDomainName/MyApplReadOnly' referred as type 'Windows Group' with Defaultdatabase 'Master' ... Then configured the database Role Membership of this user by setting db_datareader and db_denydatawriter to true. ... for the current user returns 0 although he is referred in active directory as someone belonging to the the windows group Mydomainname\MyapplReadOnly ... There is a login, there is a user that mapped to the Login ...
    (microsoft.public.sqlserver.security)
  • Re: New to Active Directory
    ... So how does the login process work? ... A user will have a local workstation username/password. ... connect to Active Directory, ... In an Active Directory environment one computers ...
    (microsoft.public.windows.server.active_directory)
  • Re: Eliminating multiple logins in VB6 with SQL svr
    ... In the login screen I use an API ... I need to check the user name when my app starts to limit their recordset ... initially put their active directory user names into the table to match up ... Dim lSize As Long ...
    (microsoft.public.vb.general.discussion)
  • Re: Changing a users name in Active Directory
    ... login name, and by clicking on the Exchange tab you should be able to change ... I would additionally suggest setting up another mailbox with the user's old ... don't forget to change her account settings within ... If you're not using active directory, similar changes will have to be made ...
    (microsoft.public.windows.server.active_directory)