Penetration Testing mailing list archives

Re: [PEN-TEST] NIS. An Alternative.


From: Jose Nazario <jose () BIOCSERVER BIOC CWRU EDU>
Date: Tue, 22 Aug 2000 13:48:48 -0400

On Mon, 21 Aug 2000, Jason Spencer wrote:

Due to the security implications created through using NIS (Network
Information Services) could anyone recommend any alternatives ?

single sign-on and centralized account management facilities? kerberos
immediately comes to mind, as does LDAP with strong (ie X509)
authentication. kerberos is widely used across multiple platforms, even
with Win2k's abuse of the specification, and is a fantastic solution. easy
to use for the userbase, but a bit of a pain for the admins to set up.
well worth it, IMHO.

jose nazario                                    jose () biochemistry cwru edu
PGP fingerprint: 89 B0 81 DA 5B FD 7E 00  99 C3 B2 CD 48 A0 07 80
Public key available at http://biocserver.cwru.edu/~jose/pgp-key.asc


Current thread: