public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
From: rdmurray@bitdance.com
To: gentoo-server@lists.gentoo.org
Subject: Re: [gentoo-server] LDAP authentication in pieces
Date: Tue, 5 Sep 2006 13:06:53 -0400 (EDT)	[thread overview]
Message-ID: <Pine.LNX.4.64.0609051302230.8194@matthew.jpcalvin.com> (raw)
In-Reply-To: <200609051751.53989.nicolas27.masse@laposte.net>

[-- Warning: decoded text below may be mangled, UTF-8 assumed --]
[-- Attachment #1: Type: TEXT/PLAIN; CHARSET=X-UNKNOWN; FORMAT=flowed, Size: 853 bytes --]

On Tue, 5 Sep 2006 at 17:51, Nicolas MASSÉ wrote:
> On Tuesday 05 September 2006 17:35, Andrew D. Fant wrote:
>> I know that there is an NIS emulation mode for ldap, but is there a more
>> elegant way to have a local password file, where logins are checked first
>> against the directory, and if there is no ldap entry for the user, falling
>> back to the local files?
>
> In /etc/nsswitch.conf, you can have an entry like this :
>
> passwd:      ldap files
> shadow:      ldap files
> group:       ldap files

I don't know much about this, but given Andrew's constraints and what
the nsswitch.conf man page says I'd think he just wants:

shadow: ldap files

without the other two, since he said that he doesn't want everyone
in the enterprise to have access to the gentoo boxes, and that the
group structure is different.

--David

  reply	other threads:[~2006-09-05 16:14 UTC|newest]

Thread overview: 4+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2006-09-05 15:35 [gentoo-server] LDAP authentication in pieces Andrew D. Fant
2006-09-05 15:51 ` Nicolas MASSÉ
2006-09-05 17:06   ` rdmurray [this message]
2006-09-05 16:17     ` Andrew D. Fant

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=Pine.LNX.4.64.0609051302230.8194@matthew.jpcalvin.com \
    --to=rdmurray@bitdance.com \
    --cc=gentoo-server@lists.gentoo.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox