Newbie question - How to do server based access control ?


we are looking into openldap as a way to provide single sign-on to our unix

I searched through the entire documentation, but there is one tricky
question remaining

Suppose I have several machines which all authenticate against the ldap
server, how can I make sure that a user can login to server1, but not to

	example	userid	stefan
			pwd		password

	the user stefan needs access to server1, but not to server2

	is this possible ?

thx in advance