tech-userlevel archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: RFC: Going the LDAP/Kerberos way with NetBSD.



On Wed, Apr 30, 2008 at 11:19:59AM +0200, Geert Hendrickx wrote:
> On Tue, Apr 29, 2008 at 11:25:19PM -0400, James K. Lowden wrote:
> > Consider: if your ldap server fails, do you want the flat files to be
> > consulted instead?  Will they be up to date and synchronized, or will they
> > be some old version, possible the installed default or some early remnant?
> > Will there be some way to ensure/report/test that they're synchronized, some
> > warning that they were used in lieu of the ldap server, some way to discover
> > which mechanism was used to render a particular result?  
> 
> 
> Only fall back to the flat files by default and not if $somevariable is set
> in /etc/rc.conf?


I'm not sure I see the point of this part of the disussion. We already have
nsswitch.conf, why not just add ldap to the proposed methods ?

-- 
Manuel Bouyer <bouyer%antioche.eu.org@localhost>
     NetBSD: 26 ans d'experience feront toujours la difference
--


Home | Main Index | Thread Index | Old Index