[36294] in Kerberos

home help back first fref pref prev next nref lref last post

Replicated LDAP as backend

daemon@ATHENA.MIT.EDU (Paul van der Vlis)
Wed Jul 23 17:44:01 2014

To: kerberos@mit.edu
From: Paul van der Vlis <paul@vandervlis.nl>
Date: Wed, 23 Jul 2014 23:18:06 +0200
Message-ID: <lqp8qe$g38$1@ger.gmane.org>
Mime-Version: 1.0
X-Complaints-To: usenet@ger.gmane.org
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello,

I am the administrator of a Kerberos system. The backend of Kerberos is
LDAP. I use it for NFS home-directories and shares. Now there is a
second location of the organisation, they would like to have the same
system there.

What I did is a replication of de LDAP to the new location, so the LDAP
is read-only. And I've installed Kerberos with that LDAP as the backend.
It seems to work. I create accounts on the old location and they are
replicated to the new location. And I can use Kerberos on the new location.

My question is: is this a good setup?

A goal is, that we want to be able to work even when there is no
internet connection between both locations.

With regards,
Paul van der Vlis.


-- 
Paul van der Vlis Linux systeembeheer, Groningen
http://www.vandervlis.nl/

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post