LinuxQuestions.org
Visit the LQ Articles and Editorials section
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
LinkBack Search this Thread
Old 02-02-2012, 12:06 PM   #1
oly_r
LQ Newbie
 
Registered: Dec 2011
Posts: 11

Rep: Reputation: Disabled
Kerberos alternative


I have recently changed jobs and where i used to work we had kerberos. Here they have nothing resembling central password management or Network Authentication. I have started looking at LDAP but wonder if that is a good choice. we have a solaris/centos environment. What would you recommend.
 
Old 02-02-2012, 12:15 PM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 39,853

Rep: Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121
I prefer LDAP to Kerberos for authentication by a long way, it's not at all confusing to understand, unlike kerberos and it's TGT's and all that.

LDAP provides a point in time, one off authentication to a server, there is no membership to be part of etc. Very simple, especially as you need somewhere for the central user info to live, so LDAP can do both things in one. What did you used to use for this when kerberos did the authentication? nis?
 
1 members found this post helpful.
Old 02-02-2012, 12:23 PM   #3
oly_r
LQ Newbie
 
Registered: Dec 2011
Posts: 11

Original Poster
Rep: Reputation: Disabled
I was at that location for almost 8 years so it has been a while since i had to even think about this. I have used NIS in the past (long past). That is why i was asking here, it seemed that LDAP would be a valid choice but i wanted to make sure i wasn't missing something else. And hoping that there might be some recommended resources for getting started with ldap.
 
Old 02-02-2012, 12:31 PM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 39,853

Rep: Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121Reputation: 1121
well I'd say OpenLDAP 2.4 and the relevant documentation, especially this http://www.zytrax.com/books/ldap/

You can look at a more "enterprise" LDAP solution using 389ds, RHDS or Centos DS (all the same thing really...) but I think it blows...
 
1 members found this post helpful.
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
kerberos Xris718 Linux - Server 9 03-04-2011 02:03 PM
ssh and kerberos error: Server not found in Kerberos database Felipe Linux - Server 1 01-17-2011 03:12 AM
kerberos denning Slackware 1 11-02-2005 07:04 AM
Kerberos Krizzc Slackware 0 10-21-2004 07:10 AM
Kerberos krieger Linux - Security 1 01-29-2002 01:40 PM


All times are GMT -5. The time now is 04:20 PM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration