[31509] in Kerberos

home help back first fref pref prev next nref lref last post

passwd/otp/nfs

daemon@ATHENA.MIT.EDU (Daniel Braniss)
Mon Sep 28 12:14:27 2009

X-Barracuda-Envelope-From: danny@cs.huji.ac.il
To: kerberos@mit.edu
Mime-Version: 1.0
Date: Mon, 28 Sep 2009 18:13:57 +0200
From: Daniel Braniss <danny@cs.huji.ac.il>
Message-ID: <E1MsIrN-000NIt-Th@kabab.cs.huji.ac.il>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi,
We provide Unix service to the Computer Science Dep. (since 76),
with about 1500 accounts (staff, researchers, students), and
probably one of the last few sites using Hesiod :-)

Since more and more users are requesting access from 'unfriendly'
environments, we are evaluating the feasibility of allowing nfs access
to a wider population, and krb5 could be the solution, but our system
has a few drawbacks:
	- no Active Directory
	- no LDAP
	- getpwnam() does not provide the encryped password

just plain hesiod and authentication is done via pam.
After some googleing, I'm not that wiser :-(
So I'm wandering, can I roll my own authentication module/library/plugin?

thanks,
	danny

	

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post