Philip Kime wrote: > I'm wondering - can I use something like netgroups in the LDAP > host-based ("host" attribute) for access restriction? I have over 1000 > servers and there is no way I can list every combination of user/host > explicity. > Hi Phil, You could easily accomplish what you are after by designing and writing a pre-authentication plugin for FDS, which parses the data structure you define in the "host" or other attribute of your choice. BR, Mike -- http://www.netauth.com - LDAP Directory Consulting