public inbox for gentoo-server@lists.gentoo.org
 help / color / mirror / Atom feed
* [gentoo-server] authentication in servers
@ 2005-08-15 22:38 Moises Silva
  2005-08-15 23:08 ` Christian L.
  2005-08-16 14:05 ` Robert Larson
  0 siblings, 2 replies; 4+ messages in thread
From: Moises Silva @ 2005-08-15 22:38 UTC (permalink / raw
  To: gentoo-server

Hi. I got a network of about 15 different hosts. Also, for each
service, different accounts are managed in each server. So keeping a
track of passwords is starting to be a problem. I would like to hear
some suggestions of more experimented users in this situation.

currently we use ssh, in some machines we use host keys without
passphrase. But every developer or mantainer has its own account. It
is reccomendable to use this approach?

The number of people with access to servers is about 7, only few
servers are supposed to be restricted to 2 or 3 people.

advices please?

best regards

-- 
"Su nombre es GNU/Linux, no solamente Linux, mas info en http://www.gnu.org"

-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [gentoo-server] authentication in servers
  2005-08-15 22:38 [gentoo-server] authentication in servers Moises Silva
@ 2005-08-15 23:08 ` Christian L.
  2005-08-16 14:05 ` Robert Larson
  1 sibling, 0 replies; 4+ messages in thread
From: Christian L. @ 2005-08-15 23:08 UTC (permalink / raw
  To: gentoo-server

Moises Silva wrote:

>Hi. I got a network of about 15 different hosts. Also, for each
>service, different accounts are managed in each server. So keeping a
>track of passwords is starting to be a problem. I would like to hear
>some suggestions of more experimented users in this situation.
>  
>

You may try LDAP authentication, theres also NIS as alternative, both  
manage password in a centralised way,but AFAIK NIS doesn't use any kind 
of encryption at the transport level, LDAP can be configured for using 
TLS/SSL.

I found this page which could be useful:

http://www.saas.nsw.edu.au/solutions/ldap-auth1.html


Cheers

Christian

Skaffa Yahoo! Mail! 6 MB gratis utrymme, antispamfunktion och antivirus.
 få den på: http://se.mail.yahoo.com
-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [gentoo-server] authentication in servers
  2005-08-15 22:38 [gentoo-server] authentication in servers Moises Silva
  2005-08-15 23:08 ` Christian L.
@ 2005-08-16 14:05 ` Robert Larson
  2005-08-17 14:29   ` Moises Silva
  1 sibling, 1 reply; 4+ messages in thread
From: Robert Larson @ 2005-08-16 14:05 UTC (permalink / raw
  To: gentoo-server

On Monday 15 August 2005 05:38 pm, Moises Silva wrote:
> Hi. I got a network of about 15 different hosts. Also, for each
> service, different accounts are managed in each server. So keeping a
> track of passwords is starting to be a problem. I would like to hear
> some suggestions of more experimented users in this situation.

This seems like it may accomplish a lot of what you may be looking for:
http://www.opentechnet.com/auth-howto/index.html

On the downside, I'm not sure how you could incorporate ssh keys into it.  The 
setup though will allow you to integrate a large variety of applications into 
one centralized system, utilizing a veriety of mechanisms.  Also, this is 
probably not the optimal or most efficient layout, but it should allow for a 
quick expansion if there is a need.

HTH

Robert Larson
-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: [gentoo-server] authentication in servers
  2005-08-16 14:05 ` Robert Larson
@ 2005-08-17 14:29   ` Moises Silva
  0 siblings, 0 replies; 4+ messages in thread
From: Moises Silva @ 2005-08-17 14:29 UTC (permalink / raw
  To: gentoo-server

thanks for your advices, i will do some research about the options you
showed me and will report back feedback.

warm regards.

On 8/16/05, Robert Larson <robert@sixthings.com> wrote:
> On Monday 15 August 2005 05:38 pm, Moises Silva wrote:
> > Hi. I got a network of about 15 different hosts. Also, for each
> > service, different accounts are managed in each server. So keeping a
> > track of passwords is starting to be a problem. I would like to hear
> > some suggestions of more experimented users in this situation.
> 
> This seems like it may accomplish a lot of what you may be looking for:
> http://www.opentechnet.com/auth-howto/index.html
> 
> On the downside, I'm not sure how you could incorporate ssh keys into it.  The
> setup though will allow you to integrate a large variety of applications into
> one centralized system, utilizing a veriety of mechanisms.  Also, this is
> probably not the optimal or most efficient layout, but it should allow for a
> quick expansion if there is a need.
> 
> HTH
> 
> Robert Larson
> --
> gentoo-server@gentoo.org mailing list
> 
> 


-- 
"Su nombre es GNU/Linux, no solamente Linux, mas info en http://www.gnu.org"

-- 
gentoo-server@gentoo.org mailing list



^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2005-08-17 14:34 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2005-08-15 22:38 [gentoo-server] authentication in servers Moises Silva
2005-08-15 23:08 ` Christian L.
2005-08-16 14:05 ` Robert Larson
2005-08-17 14:29   ` Moises Silva

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox