[389-users] Migrating to LDAP authentication

Morris, Patrick patrick.morris at hp.com
Tue Feb 2 18:13:21 UTC 2010


Sean Carolan wrote:
>> Thanks for the info, the sshd_config file may be the way to go.  We
>> already use cfengine so it would be fairly easy to implement and push
>> out to all our servers.
>>     
>
> Speaking of cfengine, I would like to use this to push out the
> /etc/pam.d/system-auth and other files required for ldap
> authentication and user information.  Are there any other files on the
> client machines that will be required to make this work?  I used the
> GUI tool (system-config-authentication) to flip on LDAP auth on my
> test machine.
>   

It's not clear to me what OS/distribution you're doing this on, but for 
the most part we have cfengine run authconfig on our Red Hat boxes to 
set up the basic LDAP auth (it's a one-liner if done that way), and then 
push around the sshd_config file.



More information about the 389-users mailing list