Re: NSS and PAM

From: Dag-Erling Smørgrav <des_at_des.no>
Date: Sat, 29 Nov 2003 14:20:19 +0100
Richard Coleman <richardcoleman_at_mindspring.com> writes:
> Replacing passwd/group/NSS/PAM/whatever with a real database or
> directory backend is a kind of holy grail for Unix that's been
> discussed for many years.

You're mixing apples and oranges here.  NSS and PAM are not backends
in themselves; they are frameworks that allow the admin to select and
combine directory and authentication backends and policies.  You can't
get by without them, because you will never find a single solution
that can replace the entire installed base of LDAP, Radius, TAC+,
Kerberos etc., and you can't enforce policy from the backend.

DES
-- 
Dag-Erling Smørgrav - des_at_des.no
Received on Sat Nov 29 2003 - 04:20:29 UTC

This archive was generated by hypermail 2.4.0 : Wed May 19 2021 - 11:37:31 UTC