-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Dave Keeton wrote:
>
> /etc/ldap.conf:
>
> host    <ip address>
> port  9270
> base  c=odot
> binddn  racfid=BNDUSR,profiletype=USER,c=DOT  
> bindpw  <clear text password>
> ldap_version  3
> pam_login_attribute   racfid
>

A little off topic, but doesn't /etc/ldap.conf needs to be world
readable (to allow ldap enabled tools to work in user space)?

If so, isn't having a password in this file a nasty security hole?

Thanks,
- -- Pat
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iEYEARECAAYFAkmLQIUACgkQNObCqA8uBsy8AQCePkp8eNuxaRrk2ey/MOZb4E93
GlIAnRCt2SKFOSoQStrmhRPUCEXW+mSL
=1v3Q
-----END PGP SIGNATURE-----

----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [email protected] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390

Reply via email to