Mailinglist Archive: opensuse (4348 mails)

< Previous Next >
Re: [SLE] login server
  • From: Elric Scott <elric@xxxxxxxxx>
  • Date: Wed, 2 Oct 2002 11:10:56 -0700 (PDT)
  • Message-id: <Pine.LNX.4.44.0210021109300.1024-100000@xxxxxxxxxxxxxxxxxxxxxxxx>
On Wed, 2 Oct 2002, Johnathan Bailes wrote:

> On Wed, 2002-10-02 at 13:53, Elric Scott wrote:
>
> >
> > You could always set up an NIS server, and then activate the NIS clients
> > on each node, then you have one central password server that controls
> > access to the rest of the nodes.
> >
>
> Just please use tcpwrappers if you plan on using NIS.
>
> NIS itself is not the most secure protocol but in use along side with
> tcpwrappers I have not seen problems with its use.
>

tcpwrappers + a restriction in the server config about what IP's can
actually talk to it, and then also make sure that NIS is blocked on the
firewall.

Nope im not paranoid, not at all. :)

- Elric

I think I was where I am - in the heart of God.


< Previous Next >
References