View previous topic :: View next topic |
Author |
Message |
johnny_martins00 Apprentice
Joined: 01 Jun 2006 Posts: 293
|
Posted: Wed Oct 04, 2006 9:28 am Post subject: Ldap, PAM, NSSS questions?????? |
|
|
im trying to make a ldap + PAM + NSS server to authenticate but i want first to know how the server runs???
i allready seen some howtos, but how thus the servers works????
how thus authenticate?????
is there any kind of password that the client needs in order to be authenticated????
in the openldap TLS the client only authenticate via ssl certificate????
how thus PAM works with LDAP????
and NSS with PAM and LDAP?????
how thus the 3 work together????
if anyone can explain me this and give me some good hints i'll be thankfull
Thk
Regards to everyone |
|
Back to top |
|
|
vad3r Guru
Joined: 02 May 2004 Posts: 461 Location: Munich, Germany
|
Posted: Wed Oct 04, 2006 12:34 pm Post subject: |
|
|
The client that want's to authenticate a user connects to the ldap server. Therefore a Bind DN and password is supplied (like user password). After successfully authentication to the ldap server the client searches the directory for the user data (shell, homedir, password, group memberships ...). After that the user is allowed to login (depending on your pam configuration). |
|
Back to top |
|
|
johnny_martins00 Apprentice
Joined: 01 Jun 2006 Posts: 293
|
Posted: Wed Oct 04, 2006 2:27 pm Post subject: |
|
|
have you ever manage to get it work a server like that????i allready tried the gentoo wiki how to but... i have several doubts and i think it didnt worked ..
Thk |
|
Back to top |
|
|
vad3r Guru
Joined: 02 May 2004 Posts: 461 Location: Munich, Germany
|
Posted: Wed Oct 04, 2006 2:30 pm Post subject: |
|
|
i just finished a setup containing 8 LDAP servers on different locations with replication and a lot of servers and devices authenticating to them. Works very well |
|
Back to top |
|
|
johnny_martins00 Apprentice
Joined: 01 Jun 2006 Posts: 293
|
Posted: Wed Oct 04, 2006 4:13 pm Post subject: |
|
|
can you give me some good tips about howto setup a LDAP + PAM server with or without nss??? i really need some good tips...
i folloewd the gentoo wiki HOWTO but have several doubts and i think it didnt worked out
Thk |
|
Back to top |
|
|
vad3r Guru
Joined: 02 May 2004 Posts: 461 Location: Munich, Germany
|
Posted: Thu Oct 05, 2006 9:11 am Post subject: |
|
|
I think you should ask more detailed questions. There's a lot i can write about implementing LDAP. |
|
Back to top |
|
|
johnny_martins00 Apprentice
Joined: 01 Jun 2006 Posts: 293
|
Posted: Thu Oct 05, 2006 6:15 pm Post subject: |
|
|
oki. basically im setting up a Vpn using the ipsec-tools. i want to use the hybrid rsa server, to authenticate users. i've google it for a while and the only page that i found that uses this authentication method it's this one , and he used a Radius server + Ldap + PAM. i allready seen many howtos, i think only one worked, many of them only have the server config, dont talk about the client side. I want a server that can be used with racoon, ipsec daemon, but nothing to complex, only to authenticate, dont ever care about groups or something else. just something that works and that is not to much complicated im not a linux master
Thk
Regards |
|
Back to top |
|
|
johnny_martins00 Apprentice
Joined: 01 Jun 2006 Posts: 293
|
Posted: Mon Oct 09, 2006 12:30 pm Post subject: |
|
|
can anyone help me on this subject?? im kind a little bit lost. Pls
Thk, Regards |
|
Back to top |
|
|
|