zdenek.kolar@veba.cz
2007-Aug-06 17:44 UTC
[Fedora-directory-users] How limit access to server
I am new in FDS and I want set up FDS to central authentication for linux servers. I added user ?test? and I can logon to every servers with this account, but I want limit access only for one server. Haw can I do it? Zdenek The information contained in this email and any attachments is confidential and may be subject to copyright or other intellectual property protection. If you are not the intended recipient, you are not authorized to use or disclose this information, and we request that you notify us by reply mail or telephone and delete the original message from your mail system.
<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN"> <html> <head> <meta content="text/html;charset=UTF-8" http-equiv="Content-Type"> </head> <body bgcolor="#ffffff" text="#000000"> Your might try using the extended host attribute...<br> <br> Aaron<br> <br> <a class="moz-txt-link-abbreviated" href="mailto:zdenek.kolar@veba.cz">zdenek.kolar@veba.cz</a> wrote: <blockquote cite="mid:OFB8D3BF77.62EA5719-ONC125732F.00604BB7-C125732F.00617DE0@VEBA.CZ" type="cite"><br> <font face="Times New Roman" size="3">I am new in FDS and I want set up FDS to central authentication for linux servers.</font> <br> <font face="Times New Roman" size="3">I added user “test” and I can logon to every servers with this account, but I want limit access only for one server. Haw can I do it?</font> <br> <br> <font face="Times New Roman" size="3">Zdenek</font> <table> <tbody> <tr> <td bgcolor="#ffffff"><font color="#000000"> <pre>The information contained in this email and any attachments is confidential and may be subject to copyright or other intellectual property protection. If you are not the intended recipient, you are not authorized to use or disclose this information, and we request that you notify us by reply mail or telephone and delete the original message from your mail system.�</pre> </font></td> </tr> </tbody> </table> <pre wrap=""> <hr size="4" width="90%"> -- Fedora-directory-users mailing list <a class="moz-txt-link-abbreviated" href="mailto:Fedora-directory-users@redhat.com">Fedora-directory-users@redhat.com</a> <a class="moz-txt-link-freetext" href="https://www.redhat.com/mailman/listinfo/fedora-directory-users">https://www.redhat.com/mailman/listinfo/fedora-directory-users</a> </pre> </blockquote> </body> </html>
Richard Megginson
2007-Aug-06 17:46 UTC
Re: [Fedora-directory-users] How limit access to server
Randall Svancara
2007-Aug-06 18:14 UTC
Re: [Fedora-directory-users] How limit access to server
You can use netgroups stored in LDAP and then edit your passwd and nsswitch.conf file accordingly. The documentation is lacking for this feature, but it works for solaris, and I am pretty sure it works for linux. Randall On Mon, 2007-08-06 at 11:46 -0600, Richard Megginson wrote:> zdenek.kolar@veba.cz wrote: > > > > I am new in FDS and I want set up FDS to central authentication for > > linux servers. > > I added user “test” and I can logon to every servers with this > > account, but I want limit access only for one server. Haw can I do it? > See http://directory.fedoraproject.org/wiki/Howto:Posix > and > http://directory.fedoraproject.org/wiki/Howto:Netgroups > > > > Zdenek > > The information contained in this email and any attachments is confidential and may be subject to copyright or other intellectual property protection. If you are not the intended recipient, you are not authorized to use or disclose this information, and we request that you notify us by reply mail or telephone and delete the original message from your mail system.� > > > > ------------------------------------------------------------------------ > > > > -- > > Fedora-directory-users mailing list > > Fedora-directory-users@redhat.com > > https://www.redhat.com/mailman/listinfo/fedora-directory-users > > > > -- > Fedora-directory-users mailing list > Fedora-directory-users@redhat.com > https://www.redhat.com/mailman/listinfo/fedora-directory-users
DeMarco, Dennis
2007-Aug-06 20:38 UTC
RE: [Fedora-directory-users] How limit access to server
In /etc/ldap.conf set your pam_groupdn Ie: Pam_groupdn cn=unixadmin, ou=LoginGroups, dc=example, dc=com Then create an ou called LoginGroups and inside a container with people that have access to that box. It works well here. There isn''t any way I know to do multiple cn''s though. - Dennis ________________________________ From: fedora-directory-users-bounces@redhat.com [mailto:fedora-directory-users-bounces@redhat.com] On Behalf Of zdenek.kolar@veba.cz Sent: Monday, August 06, 2007 1:45 PM To: fedora-directory-users@redhat.com Subject: [Fedora-directory-users] How limit access to server I am new in FDS and I want set up FDS to central authentication for linux servers. I added user "test" and I can logon to every servers with this account, but I want limit access only for one server. Haw can I do it? Zdenek The information contained in this email and any attachments is confidential and may be subject to copyright or other intellectual property protection. If you are not the intended recipient, you are not authorized to use or disclose this information, and we request that you notify us by reply mail or telephone and delete the original message from your mail system. This message (including any attachments) contains confidential information intended for a specific individual and purpose, and is protected by law. If you are not the intended recipient, you should delete this message. Any disclosure, copying, or distribution of this message, or the taking of any action based on it, is strictly prohibited.