Re: [389-users] Migrating to LDAP authentication

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> For example, we might have a group called "db-ssh" that defines a user
> group allowed to access database servers.  Then we just make sure DB
> hosts get "AllowGroups db-ssh" added to their SSH configs.  Plopping a
> user into the db-ssh group in LDAP then gives that person access to all
> the boxes that group is allowed to access with one LDAP entry.

Ok, so I have a group called "operations" and have placed some users
in it.  "getent group" shows the group:

operations:*:10000:scarolan,user2,user3,user4

I tried putting "AllowGroups operations" into my sshd_config but I
just get "invalid user" errors from sshd.  Am I missing something
here?
--
389 users mailing list
389-users@xxxxxxxxxxxxxxxxxxxxxxx
https://admin.fedoraproject.org/mailman/listinfo/389-users


[Index of Archives]     [Fedora Directory Users]     [Fedora Directory Devel]     [Fedora Announce]     [Fedora Legacy Announce]     [Kernel]     [Fedora Legacy]     [Share Photos]     [Fedora Desktop]     [PAM]     [Red Hat Watch]     [Red Hat Development]     [Big List of Linux Books]     [Gimp]     [Yosemite News]

  Powered by Linux