Re: Service that runs with network credentials

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Fri, Dec 6, 2019 at 12:58 PM Kenneth Porter <shiva@xxxxxxxxxxxxxxx> wrote:
--On Thursday, December 05, 2019 10:37 AM +0100 Lennart Poettering
<mzerqung@xxxxxxxxxxx> wrote:

> I am not sure what "network credentials" is supposed to mean

Here's where this came up.

<https://sourceforge.net/p/backuppc/mailman/message/36870735/>

The problem reported was pretty vague.

Yeah, it's unclear what purpose the configuration needs to serve.

Windows allows configuring a service to use an Active Directory account, which gives both the local SID and the network credentials simultaneously (since the account's password is stored). But these things are completely separate for Linux services – e.g. you can tell the service manager to setuid() to a LDAP account's UID/GID but that won't give you any Kerberos tickets at all; and you can use k5start to provide Kerberos credentials for network access but that won't have anything to do with the service's local UID/GID.

--
Mantas Mikulėnas
_______________________________________________
systemd-devel mailing list
systemd-devel@xxxxxxxxxxxxxxxxxxxxx
https://lists.freedesktop.org/mailman/listinfo/systemd-devel

[Index of Archives]     [LARTC]     [Bugtraq]     [Yosemite Forum]     [Photo]

  Powered by Linux