[Gllug] LDAP

Simon Stewart sms at lateral.net
Tue Sep 25 15:09:18 UTC 2001


On Tue, Sep 25, 2001 at 03:42:56PM +0100, Tim Gray wrote:
> Amongst others Simon Stewart wrote:
> 
> > Surely that's only if you want an LDAP v3 compliant server? I assure
> > you that it is perfectly possible to authenticate against an LDAP
> > server without needing Kerberos.
> >
> > You just can't do it hugely securely ;)
> 
> Why not store your password as an MD5 string in your LDAP database. Then when a
> user makes a PAM autentication/request just pipe it through an MD5 hash first
> then send over the network. It will give a measure of security.

That's what I do. Works quite nicely.

Cheers,

Simon

-- 
Building translators is good clean fun.
		-- T. Cheatham

-- 
Gllug mailing list  -  Gllug at linux.co.uk
http://list.ftech.net/mailman/listinfo/gllug




More information about the GLLUG mailing list