From owner-cvs-all Fri Jun 12 12:04:54 1998 Return-Path: Received: (from majordom@localhost) by hub.freebsd.org (8.8.8/8.8.8) id MAA17291 for cvs-all-outgoing; Fri, 12 Jun 1998 12:04:54 -0700 (PDT) (envelope-from owner-cvs-all@FreeBSD.ORG) Received: from ranma.nectar.com (c019.n.communique.net [204.27.67.19]) by hub.freebsd.org (8.8.8/8.8.8) with ESMTP id MAA17054; Fri, 12 Jun 1998 12:03:57 -0700 (PDT) (envelope-from nectar@ranma.nectar.com) Received: from ranma.nectar.com (localhost.communique.net [127.0.0.1]) by ranma.nectar.com (8.8.8/8.8.8) with ESMTP id OAA13421; Fri, 12 Jun 1998 14:00:11 -0500 (CDT) Message-Id: <199806121900.OAA13421@ranma.nectar.com> X-Mailer: exmh version 2.0.2 2/24/98 X-PGP-RSAfprint: 00 F9 E6 A2 C5 4D 0A 76 26 8B 8B 57 73 D0 DE EE X-PGP-RSAkey: http://pgp.ai.mit.edu:11371/pks/lookup?op=get&search=0x094724A9 From: Jacques Vidrine In-reply-to: <199806120825.QAA16386@spinner.netplex.com.au> References: <199806120825.QAA16386@spinner.netplex.com.au> Subject: Re: cvs commit: src/lib/libc/net ns_name.c ns_netint.c ns_parse.c ns_print.c ns_ttl.c res_mkupdate.c res_update.c Makefile.i To: Peter Wemm cc: Andreas Klemm , Bill Paul , cvs-committers@FreeBSD.ORG Date: Fri, 12 Jun 1998 14:00:11 -0500 Sender: owner-cvs-all@FreeBSD.ORG Precedence: bulk -----BEGIN PGP SIGNED MESSAGE----- A nice solution: RADIUS server uses hesiod as account directory. Mail server uses hesiod, unless it is something like Cyrus. The RADIUS server and mail server uses Kerberos for authentication. If you must, shell accounts can also be supported by hesiod and Kerberos. Of course, you can't use CHAP with Kerberos, either -- storing passwords in plain text is silly anyway. Jacques Vidrine On 12 June 1998 at 16:25, Peter Wemm wrote: > Andreas Klemm wrote: > > On Thu, Jun 11, 1998 at 10:38:40PM +0800, Peter Wemm wrote: > > > > > > 1: we get things like hesiod for free, along with scope for things like > > > pure radius accounts etc. > > > > Interesting for ISP's. > > Yes, you can say that again. Radius is nice, but.. Up until now you've > often had to duplicate accounts, passwords etc etc - one set for the > terminal servers, one for the shell/mail/etc servers. The possibility of > storing everything in one place would be really nice, as long as it was > quick and robust. ppp/CHAP can't be used with unix encrypted passwords, > so you can't use a unix /etc/master.passwd file as a source for ``secure'' > (as microsoft calls it) authentication. > > I have a personal interest in this area, but have not had much to do with > Radius yet. This will be changing as I'm going to be introduced (with > force :-) to terminal servers that use Radius sometime over the next few > months. > > > -- > > Andreas Klemm http://www.FreeBSD.ORG/~andrea s > > What gives you 90% more speed, for example, in kernel compilation ? > > http://www.FreeBSD.ORG/~fsmp/SMP/akgraph-a/graph1.html > > "NT = Not Today" (Maggie Biggs) ``powered by FreeBSD SMP' ' > > > > Cheers, > -Peter > -- > Peter Wemm Netplex Consulting > > > > To Unsubscribe: send mail to majordomo@FreeBSD.org > with "unsubscribe cvs-all" in the body of the message > -----BEGIN PGP SIGNATURE----- Version: 2.6.2 iQCVAwUBNYF6uzeRhT8JRySpAQH8DgQAn899Uks0qlzh+gtoe6jC8AKwD36gPipC LR5jSDQmBN/L6z4sZudsP0ZMAeR6w7Sl87fijsYE7rvWlU++b3by7L5b9ldbXF99 q4HtI34DF7LHnBkJZP129LWETWsAkKX8TNPl1/k+lChaPl92P77Zic03mc9zdyg2 D5FuSTirqYI= =N2RU -----END PGP SIGNATURE----- To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe cvs-all" in the body of the message