Sean Carolan wrote: >> Thanks for the info, the sshd_config file may be the way to go. We >> already use cfengine so it would be fairly easy to implement and push >> out to all our servers. >> > > Speaking of cfengine, I would like to use this to push out the > /etc/pam.d/system-auth and other files required for ldap > authentication and user information. Are there any other files on the > client machines that will be required to make this work? I used the > GUI tool (system-config-authentication) to flip on LDAP auth on my > test machine. > It's not clear to me what OS/distribution you're doing this on, but for the most part we have cfengine run authconfig on our Red Hat boxes to set up the basic LDAP auth (it's a one-liner if done that way), and then push around the sshd_config file. -- 389 users mailing list 389-users@xxxxxxxxxxxxxxxxxxxxxxx https://admin.fedoraproject.org/mailman/listinfo/389-users