[Date Prev][Date Next] [Chronological] [Thread] [Top]

Password sync with LDAP?



So, these days, we have NIS, and we have Netscape Directory Server, which
syncs with the NT domain.  I force my users to change passwords via a script
which wraps around yppasswd and smbpasswd.

I want to rebuild our LDAP implementation, and, mainly because it runs on
FreeBSD where Directory Server doesn't, I'd like to check out OpenLDAP.

I know little of LDAP, but looking at the password situation, it looks like I
*could* ypcat passwd my NIS database in to the LDAP server.

Is this assumption accurate?  Can I put traditional DES hashes in LDAP, and
does this mess with anyone's ability to auth against LDAP?  Does anyone do
this?  Example scripts, perhaps?

After that, does anyone have a way of sync'ing OpenLDAP auth with NT?  A
colleague says that Win2k is starting to come with NIS functionality, and if
so, that could be exciting.

Thanks,
-danny

-- 
come.to/dannyman