[29466] in Kerberos
login restriction
daemon@ATHENA.MIT.EDU (Marcin N)
Wed Mar 12 05:30:57 2008
From: Marcin N <nichu@nospam.onet.pl>
Date: Wed, 12 Mar 2008 10:29:07 +0100
Message-ID: <fr87om$mj9$1@news.onet.pl>
Mime-Version: 1.0
X-Complaints-To: usenet@news.onet.pl
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
Hello again
I'm wondering if it is possible to make restriction on which hosts users
authorized by kerberos can log on.
For now only users who have local account (so they are in /etc/password
and /etc/shadow) can log in to the machine.
But is there possibility to control it via any kind of access list or
something like that - which would be managed on kdc?
i would like to have all users local accounts on every machine and
decide which user can log to specific machine by setting it on kdc...
is it possible?
Regards
nichu
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos