public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-server] switch NIS to LDAP
@ 2005-09-10 16:01 RagNoRoc
  2005-09-10 16:10 ` [gentoo-server] " RagNoRoc
  0 siblings, 1 reply; 3+ messages in thread
From: RagNoRoc @ 2005-09-10 16:01 UTC (permalink / raw
  To: gentoo-server

[-- Attachment #1: Type: text/plain, Size: 1213 bytes --]

Let me get some background out there first. The environment I am going to be 
talking about has a few hundred windows machines, a handful of windows2003 
servers, a few dozen quad processor solaris servers and an unmeasurable 
amount of Linux boxes running Gentoo and RedHat. The environment has over 
3,000 active accounts and at any given time there are at least 100 people 
logged in.

Currently you must have 2 logins, one for windows and one for unix. We are 
using Active Directory on a domain controller machine to do the windows 
logins and we have NIS for all the UNIX machines. We are putting a plan 
together to use a LDAP server to make a unified login for the operating 
systems involved.

I have a gentoo box setup which I plan to install LDAP on, then import all 
the NIS information in and test cross platform logins with. Has anyone 
worked with NIS to LDAP conversions or have experience with getting 
non-linux operating systems to use LDAP (instead of a windows domain 
controller for example)?

Also any comments on which LDAP we should try out? We were thinking of the 
Netscape one that RedHat has but nothing has been set in stone yet.

Thanks for any help.

Kirk

[-- Attachment #2: Type: text/html, Size: 1241 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

* [gentoo-server] Re: switch NIS to LDAP
  2005-09-10 16:01 [gentoo-server] switch NIS to LDAP RagNoRoc
@ 2005-09-10 16:10 ` RagNoRoc
  2005-09-10 17:13   ` Paul Kölle
  0 siblings, 1 reply; 3+ messages in thread
From: RagNoRoc @ 2005-09-10 16:10 UTC (permalink / raw
  To: gentoo-server

[-- Attachment #1: Type: text/plain, Size: 534 bytes --]

Two other pieces of information I forgot to mention. In terms of database 
backends we have a license for a commerical database but with the daily 
beating we give it I doubt we will use that. So assume this will use a MySQL 
backend unless of course this whole setup is easier with Postgresql.

The other piece of information I forgot is that the Windows machines that 
are not servers are all WindowsXP SP2 and we are using Solaris 8 on the 
servers. A solaris 10 upgrade could be in the future but that is down the 
road.

[-- Attachment #2: Type: text/html, Size: 541 bytes --]

^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: [gentoo-server] Re: switch NIS to LDAP
  2005-09-10 16:10 ` [gentoo-server] " RagNoRoc
@ 2005-09-10 17:13   ` Paul Kölle
  0 siblings, 0 replies; 3+ messages in thread
From: Paul Kölle @ 2005-09-10 17:13 UTC (permalink / raw
  To: gentoo-server

RagNoRoc wrote:
> Two other pieces of information I forgot to mention. In terms of
> database backends we have a license for a commerical database but with
> the daily beating we give it I doubt we will use that. So assume this
> will use a MySQL backend unless of course this whole setup is easier
> with Postgresql.
>From what I've heared on the openldap mailinglist, an SQL backend is
hard to setup and will not perform as well as bdb/hdb. Have you
considered using winbindd from samba to solve the unified login problem?

http://lib.risk.ee/samba/winbind.html

cheers
 Paul

-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2005-09-10 17:10 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-09-10 16:01 [gentoo-server] switch NIS to LDAP RagNoRoc
2005-09-10 16:10 ` [gentoo-server] " RagNoRoc
2005-09-10 17:13   ` Paul Kölle

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox