RE: OpenLDAP + User Authentication



It may be possible to accomplish this, but you have a bigger problem than
that. Who is ultimately responsible for your network? They should be the one
that should have the authority to fix this. If No One person is sresponsible
for Network services then you will have many problems like this in the
future.

Alternatively, You have a few choices.
1. Do what you propose = Alot of work and research and it may not be a
success
2. Combine the two LDAP servers into one server with two trees make sure to
use the least expensive non-proprietary server.
3. Install two routers and break the departments out of the sharing the same
network. This is only cost effective if it prevents problems like this in
the future. It may break other services too.

BTW shame on the other guy for not checking the services that were running
first before installing the same one. How many resources did he waste of the
organizations' time and money by not doing his homework.

Job Cacka

-----Original Message-----
From: redhat-list-bounces@xxxxxxxxxx
[mailto:redhat-list-bounces@xxxxxxxxxx]On Behalf Of Ryan Golhar
Sent: Monday, January 30, 2006 1:45 PM
To: 'General Red Hat Linux discussion list'
Subject: OpenLDAP + User Authentication


I have an LDAP server which I'm using to authenticate my users from.
Recently, another dept here put their own LDAP server in place with a
different set of users that may/may not be in my LDAP.

What I'd like to do is have my machines attempt to authenticate a user
from my LDAP, and if the user doesn't exist, have the LDAP refer to the
other dept's LDAP server. Is this possible with LDAP? If so, can
anyone point me to where I can read up on this? I found a little
information on superior referrals, but no detailed information on how it
works.

Ryan

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list



Relevant Pages

  • Re: AD Auth for standalone ISA in DMZ
    ... "The authentication method selected for user set ... The network boys tell me that they have port 389 open between ... Under Specify RADIUS and LDAP Servers, ...
    (microsoft.public.isa.configuration)
  • Ldap error with Entourage 2004
    ... trying to do a check names (the current LDAP is pointing to our Exchange ... The connection to the server failed because the network is unavailable. ... Account name: "name of account" ... If I change the LDAP server to one of our Windows 2000 Domain Controllers, ...
    (microsoft.public.mac.office.entourage)
  • LDAP connections only work on local subnet
    ... I have a problem when connecting to an LDAP server that I can't explain. ... located on network 1. ... Here is what it looks like on the command line and in the tethereal log. ...
    (Debian-User)
  • dmz and private network
    ... I have a web server in the DMZ that I want to authenticate against our ldap ... The ldap server resides in the internal network. ... The ldap server is an iplanet directory server 5.0. ... can put a slave ldap server in the DMZ and have the master pushing updates ...
    (Security-Basics)
  • [SLE] LDAP question
    ... I'm thinking of setting up an LDAP server for our huge network which ... consist of 1 SuSE user and 6 Outlook XP users. ...
    (SuSE)