[K12OSN] Samba/LDAP how-to in OO format

Gavin Henry ghenry at suretecsystems.com
Wed Jun 16 19:21:30 UTC 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Wednesday 16 Jun 2004 03:28, David Trask wrote:
> http://web.vcs.u52.k12.me.us/linux/Samba-LDAP.sxw
>
> here's the Samba LDAP how-to in OO format
>

I have 3 points and one request:

1. The backend ldap should be bdb not ldbm (discussed very indepth on the 
OpenLDAP lists).

2. You should really have access controls on the LDAP database, as anyone can 
hen read your hashed password over the wire, unless, which I didn't notice, 
you only have the LDAP server listening on localhost?

3. You should be using TLS.

4. Could you do a wee conclusion, rounding everything off.


Would you mind if some of us add the 3 points above in?

Lastly, this is great document and must of taken you ages. ALl it needs is 
someone to start this of, then others can help.

Due you mind if I forward this to the fedora-docs list as they can do all this 
for us?

Thanks.


- -- 
Kind Regards,

Gavin Henry.
Managing Director.

T +44 (0) 1224 587369
M +44 (0) 7930 323266
F +44 (0) 1224 742001
E ghenry at suretecsystems.com

Open Source. Open Solutions.

http://www.suretecsystems.com/
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.4 (GNU/Linux)

iD8DBQFA0J26eWseh9tzvqgRAkrbAJ0SOZ1EC5tMa8tYQlHe/3PmgAIrEwCfVgrz
wbjBRSOS0Y2gFywxjapyVgM=
=Mg4n
-----END PGP SIGNATURE-----





More information about the K12OSN mailing list