From owner-freebsd-questions Mon Oct 21 5:41:10 2002 Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 516E037B401 for ; Mon, 21 Oct 2002 05:41:08 -0700 (PDT) Received: from mail1.uits.uconn.edu (mail1.uits.uconn.edu [137.99.25.203]) by mx1.FreeBSD.org (Postfix) with ESMTP id AA9F643E65 for ; Mon, 21 Oct 2002 05:41:07 -0700 (PDT) (envelope-from matt@forsetti.com) Received: from d80h149.public.uconn.edu (d80h149.public.uconn.edu [137.99.80.149]) by mail1.uits.uconn.edu (8.11.6/8.11.6) with ESMTP id g9LCdJ121034; Mon, 21 Oct 2002 08:39:19 -0400 Subject: Re: authentication server with group permissions? From: Matt Smith To: David Loszewski Cc: wolf , freebsd-questions@FreeBSD.ORG In-Reply-To: <3DB33D0F.6010407@attbi.com> References: <20021019222345.DAYW18217.rwcrmhc51.attbi.com@rwcrwbc70> <3DB21FDB.8000005@hq.dyns.cx> <3DB33D0F.6010407@attbi.com> Content-Type: text/plain Content-Transfer-Encoding: 7bit X-Mailer: Ximian Evolution 1.0.8 Date: 21 Oct 2002 08:39:19 -0400 Message-Id: <1035203959.281.4.camel@localhost> Mime-Version: 1.0 X-MailScanner: Found to be clean Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Sun, 2002-10-20 at 19:32, David Loszewski wrote: > basically what we are trying to accomplish is that I'm in an office with > may employees. > Say we have 5 different servers, and I have files on the servers that I > want all the employees in a specific group have read access to those > files, or write access depending on permissions for that group. So when > an employee logs into a server I want it to go to some internal > authentication server and tell the server that it's k for that person to > access that file. I want to do this without copying to passwd file to > each server. > > Dave > > wolf wrote: > > > could you be more specific? > > > > sharing files via NFS? > > transparent logging to other servers? > > other? > > > > What you are trying to do in particular affects how you > > accomplish your goal. > > > > stealth215@attbi.com wrote: > > > >> Could someone point me in the right direction to find > >> information on creating an authentication server in such > >> a way that if some user logs in on a particular machine, > >> as long as he is in a certain group he will have read > >> access to all/or certain files as well on other servers > >> depending on the group and rules set for that group? > >> > >> Dave > >> > >> To Unsubscribe: send mail to majordomo@FreeBSD.org > >> with "unsubscribe freebsd-questions" in the body of the message > >> > > > > > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe freebsd-questions" in the body of the message > Make sure you also check out Kerberos (http://web.mit.edu/kerberos). -Matt To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message