LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 11-04-2011, 10:47 AM   #1
borepstein
LQ Newbie
 
Registered: Jun 2010
Location: Boston, MA, USA
Distribution: OpenSUSE, Ubuntu, Centos
Posts: 10

Rep: Reputation: 2
coordinating NIS and LDAP


Hello all,

I've got a number of Linux/Mac OS X/UNIX/Windows machines I would like to authenticate in a consistent way. Currently some of them use NIS, though, and some have outdated OS's.

LDAP is clearly a good way moving forward, however the question is: if I want to have NIS and LDAP with the same user info, is that possible? Is it possible to keep them in sync via some sort of an established procedure? Has that been done? How?

Any help would be much appreciated.

Thanks.

Boris.
 
Old 11-04-2011, 02:58 PM   #2
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,671
Blog Entries: 4

Rep: Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945Reputation: 3945
I suggest that you should standardize on one or the other, and not attempt to keep them in sync.

Obviously, if you do find it necessary to use both, you need to designate one of these two as being "the (one and only...) authority." You will need to find an appropriate mechanism by which updates to one are immediately slaved to the other, such that only one of the two must be maintained. Obviously, there are compelling advantages in not having to do that.

LDAP (nee Open Directory) is a very widely accepted standard, and I would suggest going to the necessary effort to getting all of the computers in your shop to conform to it. Even "older" OSes should offer LDAP support. You might have to reconfigure some things, but this should be very manageable without "throwing the baby out with the bathwater."

I suggest that you should step back, look at all of your systems' present state, and determine exactly what would need to be done to each one to bring it up to standard. (You'll also need to reconcile the various "authorities" to be certain that they do, in fact, convey "one, and only one 'truth.'") Then, look for ways to deploy the necessary configuration changes to as many systems as possible "automagically," i.e. (to quote a really dreadful country song...) "this ain't no thinkin' thang." Carefully develop a conversion project-plan, troubleshoot it before beginning, then execute it.

Last edited by sundialsvcs; 11-04-2011 at 03:02 PM.
 
  


Reply

Tags
authentication, ldap, nis



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
NIS(YP) vs. LDAP: Which is better? richinsc Linux - Server 4 01-26-2009 09:50 AM
NIS and LDAP ? adekoya_sola Linux - Newbie 2 12-08-2008 12:53 PM
NIS and LDAP ? adekoya_sola Linux - Newbie 3 12-08-2008 12:47 PM
Nis - Ldap - Ad steven.wong Linux - Networking 3 08-31-2006 06:37 PM
How i use Nis or LDAP sfahadtariq Linux - Networking 1 01-16-2006 03:09 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 11:08 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration