Setting up centralized authentication for Linux SSH users

Michael Ströder michael at stroeder.com
Mon Jun 22 20:31:32 CEST 2015


Daniel Bray wrote:
> On Mon, Jun 22, 2015 at 1:52 PM, Alan DeKok <aland at deployingradius.com> wrote:
>>
>>   RADIUS doesn't do UID, GID, home directory, etc.  So it's probably not the correct choice for logging into Linux servers.
>>
> 
> I can take care of that with either Spacewalk, or other scripted
> methods.  I was mainly looking for a centralized user "database",
> focusing on AAA.  I've seen comparisons to OpenLDAP and other
> directory services, but I'm just not needing the level of Identity
> Management that LDAP-based services provide.  My main focus is just
> (security) authorization.

At least you have to maintain some Identity Management data somewhere.
LDAP solutions are there. Everything else you have to invent yourself.

Ciao, Michael.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4272 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20150622/04e1d72d/attachment.bin>


More information about the Freeradius-Users mailing list