:: Centralised Authentication :: An overview of LDAP & Radius deployments using open source components.

www.jethrocarr.com [email protected]

:: what is centralised authentication? :: ●

Centralised location for management of user and group information.

Typically supports multiple operating systems & applications – usually based around a standard. ●



One place to add, change or revoke user credentials.



Ability to define what permissions particular users have.



Examples: LDAP, Kerberos and Active Directory.

:: everyone loves diagrams ::

:: Lightweight Directory Access Protocol :: “is an application protocol for accessing and maintaining distributed directory information services over an Internet Protocol (IP) network” ~ Wikipedia

LDAP is commonly considered to be a user storage database – LDAP is no more a “user storage database” than is MySQL, both are tools which provide this functionality, along with many other possibilities.

:: NOT a relational database ::

:: Tree Based Structure :: dc=example,dc=com

ou=People

uid=jethro

uid=lisa

ou=Group

cn=admins

cn=developers

http://en.wikipedia.org/wiki/X.500

:: LDAP Records ::

:: Scalibility ::

1 user

18,000+ users

:: Popular ::

Linux, Windows, Solaris, Applications, VoIP Phones, Routers, PHP, Perl, Python, C#/.NET, and more

:: Open Source :: OpenLDAP – popular, reliable, ships with almost every Linux distribution. http://www.openldap.org/ ●

389 Directory Server – Red Hat / Fedora's LDAP server http://directory.fedoraproject.org/wiki/Main_Page



(Also known as “Red Hat Directory Server”, “Fedora Directory Server” and once upon a time, “Netscape Directory Server”). FreeRadius – most widly deployed RADIUS server in the world. http://freeradius.org/



:: If LDAP is so awesome, why RADIUS? ::

:: If LDAP is so awesome, why RADIUS? ::

:: And more... ::

:: But isn't user management.... a bit ugly? ::

:: LDAPAuthManager :: http://www.amberdms.com/ldapauthmanager

:: Example Auth Build ::

:: DEMO TIME ::

Centralised Authentication :: An overview of LDAP ... - Jethro Carr

Scalibility :: 1 user. 18,000+ users. Page 10. :: Popular :: Linux, Windows, Solaris,. Applications, VoIP. Phones, Routers, PHP,. Perl, Python, C#/.NET, and more ...

382KB Sizes 7 Downloads 141 Views

Recommend Documents

An overview of the immune system
travel round the body. They normally flow freely in the ...... 18 The International Chronic Granulomatous Disease Cooperative. Study Group. A controlled trial of ...

An overview of the immune system
Education (B Cohen BSc), St Bartholomew's and the Royal London ... function of the immune system in recognising, repelling, and eradicating pathogens and ...

An overview of scale, pattern, process ... - ScienceDirect.com
resolutions of remote sensing systems and through the analytical and data integration ... technologies can be linked together into a synergistic system that is ...

Understanding LDAP
9.14 Manual installation of IBM WAS - Express . ...... Pennsylvania and an MBA in e-Business from the University of Phoenix. Ami currently manages the IBM ...

CENTRALISED EMPLOYMENT NOTICE-Eng
Application to more than one RRB will lead to rejection of all the applications. ... (a) Mobile phones, pagers, laptops, calculators or any other communication devices are not allowed inside the premises where .... 2. Special Recruitment Drive (SRD)

An olivine fabric database: an overview of upper mantle ... - CiteSeerX
duction zones, and kimberlites, with various micro- structures ... Micro-structure and respective percentage ..... Although the trend is observed for S-wave seismic.

Understanding LDAP
method for directory information, much the same as the Domain Name System ...... with the server, or the client can establish an anonymous session with default.

AN OVERVIEW OF POSSIBILISTIC HANDLING OF ...
Dec 6, 2003 - the dual necessity (or certainty) degree N(φ) = 1 −. ∏. (¬φ) which .... scientists have discovered some new life forms, called Glacyceas, in the arctic ocean .... Do you expect this Worm, with more than one year of life expectanc

An overview of possibilistic handling of default ...
family of possibility distributions satisfying constraints expressing that the situation where ... value in {T, F} to each formula in L according to the classical rules of.

Economics of Biofuels: An Overview of Policies, Impacts ...
2 Center for Agricultural and Rural Development, Iowa State University, ..... Alternative energy sources should, therefore, become competitive as time goes by.

Economics of Biofuels: An Overview of Policies, Impacts and Prospects
examination of several open issues and the future prospects of biofuels. ... production trend depicted in figure 2 shows a slow albeit steady growth up to the beginning of the ...... in calculating their proposed corporate average fuel economy (CAFE)

Introduction to LDAP
Distribution - with LDAP data can be near where it is needed ... Directory tree is similar to unix file system ... In unix, an entry is either a file or a directory - not.

LDAP Schema Design
Schema is the term used to describe the shape of the ... the relational model used by most well-known database systems, and this affects the way LDAP .... delegated management: if all the people in the Customer Service Department are .... Used to sto

An overview of snow photochemistry: evidence ...
Aug 22, 2007 - M. Keck Laboratories, California Institute of Technology, Pasadena, CA 91125, USA. 10Center for Atmospheric Sciences, Department of Chemistry, Cambridge University, ... 25Department of Chemistry, University College Cork, Cork, Ireland

An Overview of the Tesseract OCR Engine - CiteSeerX
of its development was back in HP Labs Bristol as an investigation of OCR for ... analysis technology that was used in products, (and therefore not released for ...

An overview of the immune system
network of lymphoid organs, cells, humoral factors, and cytokines. The essential function of the ...... effects of social, psychological, and environmental factors.