On Tue October 12 2004 22:38, Shawn wrote:
<snip>
> As Curtis mentioned, I should probably dig into Kerebos as well, though I
> think it's a bit much right now.  I want to be secure though, so I'll at
> least investigate it.  This isn't a critical thing at this time, it's more
> for my own convenience, so I do have time to investigate/research/hack
> together a solution.
>
> Curtis, wrt LDAP, you're right, I only need a couple of accounts set up for
> single login.  BUT, I can see real potential in using LDAP for other things
> as well.  Maybe store my contacts there, and/or some other such data, then
> export it to a "public" LDAP directory for use in web pages.

Yes!  Those are great reasons.  And, had I thought about it, I probably could 
have guessed you would have already considered such services for your 
network.  But I discovered for myself -- as usual, after hitting 'Send' -- 
that I was already late to the party.  <g>

> Also, by 
> taking this step, I can forsee at least one custom application I use that
> can integrate with Active Directory (which is just the MS version of LDAP,
> more or less) to simply use the Windows authentication information for the
> current user.

True that the directory part of Active Directory is built on LDAP.  Also true 
that it uses Kerberos for its centralized authentication.  It just happens to 
store that information in LDAP.  :-)  Of course, there are catches and 
caveats to both aspects (in terms of standards compliance), but fundamentally 
AD is interoperable with other implementations.  AD is actually pretty slick, 
all told, but I still like to be able to tinker.  Ergo, FOSS and Linux for 
me.  :-)

> But, LDAP only handles the authentication end of things.

I'm confused (because I only have the vaguest of memories as to how LDAP 
handles authentication), so I guess this is where I just need to do some 
reading on LDAP.  :-)

Have fun!

Sincerely,
Curtis S.

_______________________________________________
clug-talk mailing list
[EMAIL PROTECTED]
http://clug.ca/mailman/listinfo/clug-talk_clug.ca
Mailing List Guidelines (http://clug.ca/ml_guidelines.php)
**Please remove these lines when replying

Reply via email to