The problem isn't just "Does FRED exist?" - it is "Does FRED exist, and does
FRED have the same GID on both systems?" Remember that very few things are
actually stored using the actual user name; most of it is stored as the UID
/ GID, which is just a number. If you haven't done UID / GID leveling
between your systems, then you're opening a huge security risk, because you
have no idea who you're granting permissions to.
--
.~. Robert P. Nix Mayo Foundation
/V\ RO-OE-5-55 200 First Street SW
/( )\ 507-284-0844 Rochester, MN 55905
^^-^^ -----
"In theory, theory and practice are the same, but
in practice, theory and practice are different."
On 2/1/08 4:50 PM, "John Summerfield" <[EMAIL PROTECTED]> wrote:
>
> My first concern would be whether the ACLs can be expressed in Linux,
> and what preparation needs to be done. An ACL to grant access to group
> FRED might not transfer if FRED does not exist,
>
----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390