[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[no subject]
- <!--x-content-type: text/plain -->
- <!--x-date: Fri May 14 10:58:00 2004 -->
- <!--x-from-r13: xnobbz ng tngrpu.rqh (Quevf Dvpxre) -->
- <!--x-message-id: [email protected] -->
- <!--x-reference: 1084462719.26896.81.camel@ibb-250 --> "http://www.w3.org/TR/html4/loose.dtd">
- <!--x-subject: [ale] OpenLDAP Question -->
- <li><em>date</em>: Fri May 14 10:58:00 2004</li>
- <li><em>from</em>: kaboom at gatech.edu (Chris Ricker)</li>
- <li><em>in-reply-to</em>: <1084462719.26896.81.camel@ibb-250></li>
- <li><em>references</em>: <1084462719.26896.81.camel@ibb-250></li>
- <li><em>subject</em>: [ale] OpenLDAP Question</li>
> I haven't done much research yet, but from what I've read on OpenLDAP,
> this idea should be possible.
>
> I have a pseudo-extranet running, and the webmaster controls the
> accounts on it via .htaccess files. I'm building a new server to handle
> all auth using LDAP (for staffers). What I'd like to do is allow the
> webmaster control over a small subset of users so she can manage their
> accounts and passwords sans my help. Anyone care to offer any
> thoughts? Good idea, bad idea, security risk, impossible?
You can certainly do that sort of thing, and it's fairly standard practice
to delegate out control of portions of the tree like that....
On a slightly related note, you might also find
<<a rel="nofollow" href="http://www.duke.edu/~gettes/giia/ldap-recipe/">http://www.duke.edu/~gettes/giia/ldap-recipe/</a>> useful. There's some effort
towards creating best-practice LDAP schemas for .edu needs, and that's a
starting place for getting into that.
later,
chris
</pre>
<!--X-Body-of-Message-End-->
<!--X-MsgBody-End-->
<!--X-Follow-Ups-->
<hr>
<!--X-Follow-Ups-End-->
<!--X-References-->
<ul><li><strong>References</strong>:
<ul>
<li><strong><a name="00536" href="msg00536.html">[ale] OpenLDAP Question</a></strong>
<ul><li><em>From:</em> jonathan.glass at ibb.gatech.edu (Jonathan Glass)</li></ul></li>
</ul></li></ul>
<!--X-References-End-->
<!--X-BotPNI-->
<ul>
<li>Prev by Date:
<strong><a href="msg00600.html">[ale] ALE Central: URLs</a></strong>
</li>
<li>Next by Date:
<strong><a href="msg00602.html">[ale] lindows neighborhood</a></strong>
</li>
<li>Previous by thread:
<strong><a href="msg00553.html">[ale] OpenLDAP Question</a></strong>
</li>
<li>Next by thread:
<strong><a href="msg00538.html">[ale] ALE Central meeting tonight</a></strong>
</li>
<li>Index(es):
<ul>
<li><a href="maillist.html#00601"><strong>Date</strong></a></li>
<li><a href="threads.html#00601"><strong>Thread</strong></a></li>
</ul>
</li>
</ul>
<!--X-BotPNI-End-->
<!--X-User-Footer-->
<!--X-User-Footer-End-->
</body>
</html>