[Newlug] Roaming profiles

D. Stark dirk at oceallc.com
Mon Dec 1 10:50:55 CST 2003


Yes! 

You'll want to use Samba as an NT Domain. The big trick will be getting 
the win2k server to acknowledge the Samba as being the Real Thing. The big 
upside to all this is that Samba has PAM support, so that your passwords 
can be handled in good 'ol /etc/shadow.

Derek

On Mon, 1 Dec 2003, Patrick Dench wrote:

> Ok, got a Q for those familiar with Linux user authentication here...
> 
> Here is our recipe for disaster.
> 
> A dozen Win9x/XP workstations
> 1 Windows 2000 (Server) Server
> 1 Linux (RH) Firewall
> 
> Add a naive systems administrator (me two years ago).  Mix in a office move,
> and an overbearing PHB.  Voila! A security disaster waiting to happen.
> 
> Basically our authentication is pathetic.  A user signs on to the local
> workstation, which is checked against the server when trying to access the
> shared drive there.  I'd *like* to set up some better authentication for
> these Win9xP machines where the firewall would server as authenticator for
> network access - at the time of user logon.  i.e. no password = ACCESS
> DENIED with loud horns and flashing lights on a 20x10 display.
> 
> Anyway, wondering if anyone has attempted such a feat?  Anyone ever
> succeeded?
> 
> -iCoach
> 
> PS Loud blaring horns, flashing lights and 20x10 display are optional...
> 

-- 
-- ------------- dirk @ oceallc.com  ----------------- --
"All my father wanted to do was make a toaster you could
 really set the darkness on. And you took his work and 
 perverted it into those hideous machines!" 
			-- Sylia Stingray, kind of
-- --------------------------------------------------- --




More information about the Newlug mailing list