[29466] in Kerberos

home help back first fref pref prev next nref lref last post

login restriction

daemon@ATHENA.MIT.EDU (Marcin N)
Wed Mar 12 05:30:57 2008

From: Marcin N <nichu@nospam.onet.pl>
Date: Wed, 12 Mar 2008 10:29:07 +0100
Message-ID: <fr87om$mj9$1@news.onet.pl>
Mime-Version: 1.0
X-Complaints-To: usenet@news.onet.pl
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello again
I'm wondering if it is possible to make restriction on which hosts users 
authorized by kerberos can log on.
For now only users who have local account (so they are in /etc/password 
and /etc/shadow) can log in to the machine.
But is there possibility to control it via any kind of access list or 
something like that - which would be managed on kdc?
i would like to have all users local accounts on every machine and 
decide which user can log to specific machine by setting it on kdc...
is it possible?

Regards
nichu
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post