What is meant by TX43 ? When did the expanded nscd go into Open Solaris?
>Date: Fri, 05 Oct 2007 13:46:40 -0400 >From: Ken Powell <Ken.Powell at sun.com> >Subject: Re: [security-discuss] TX43 with Multiple Network Interfaces? >To: Ira Bargon III <ira.bargon at gmail.com> >Cc: security-discuss at opensolaris.org >Ira Bargon III wrote: >>> The system should be using the LDAP client in the global zone >>> for applications that do lookups through nscd. Some applications >>> however call LDAP library services directly. I gather you are >>> running into this? >> >> I dont believe I've ran into that yet. I was basically trying to setup >> LDAP authentication between a TX server and a TX client., but I was >> using instructions from the TX Install / Config manual. The document >> states that you need to make your local zones LDAP clients of the global >> zone's LDAP server. Is this step not necessary for a standard LDAP >> authentication configuration (usernames, passwords, groups, printers, >> etc..). Are you saying that NSCD should take care of this and I wont >> need to make my local zone's ldap clients. From what I understand by >> your post there are certain situations in which I would need to make my >> local zone's LDAP clients. > >Yes, NSCD will take care of doing lookups through the global zone >for those applications that use it. I don't have a good feel for >what applications end up using NSCD, so can't say if it is likely >to be all you need. If not, I would try Glenn's suggestion of >setting up an LDAP proxy server in the client's global zone. > >Ken >_______________________________________________ >security-discuss mailing list >security-discuss at opensolaris.org