[OpenAFS] /etc/passwd mgmt

Benjamin P Myers dative@sukrahelitek.com
Thu, 10 Mar 2005 14:17:57 -0600


On Thursday 10 March 2005 12:10 am, Dj Merrill wrote:
>         I've considered NIS, but don't really care for it, and
> LDAP might have some possbibilities, but we don't want to delve into
> its depths at this time.  Distributing the /etc/passwd text file
> would seem to be the preferred method at present, but I am
> open to other suggestions.
>
>         What is everyone using to manage such things?

openldap isn't so hard to configure if you're not going to worry about so=
me of=20
the more advanced features like TLS, SASL, etc.  Long run, it might be be=
tter=20
for you to go that route because you can use it to backend kerberos and f=
or=20
dns--it could simplify things for you later at the cost of a little extra=
=20
work now.  If you're wanting to distribute /etc/passwd, take a look at=20
cfengine (www.cfengine.org) or you can use rsync.

Come to think of it, I wonder if it would be good choice for some of the =
afs=20
ptserver/vlserver stuff--acls, kerberos support, referrals--but then I do=
n't=20
know all of what'd be involved.  An idea.  Throwing it out there.

Cheers,
Ben