Darren J Moffat <[EMAIL PROTECTED]> writes:

> > If we do not do this, you must provide local acocunts, which is far
> > worse, security wise, than cached directory information.  This is what
> > I'm trying to avoid -- I believe that we should be able to leverage the
> > directory service for user information rather than building individual
> > local accounts.
> 
> Why do you think local accounts are any worse than a persistent cache ?

Because they tend to be a maintenance nightmare.  Think of the scenario
with group laptops I described in my last message.

        Rainer

-- 
-----------------------------------------------------------------------------
Rainer Orth, Faculty of Technology, Bielefeld University
_______________________________________________
opensolaris-discuss mailing list
[email protected]

Reply via email to