RE: Is there P.A.M. or Kerberos authentication support in IDS?
Posted in 2004
This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible. ------_=_NextPart_001_01C3E131.0EF65E60 Content-Type: text/plain; charset="iso-8859-1" PAM is covered in depth in the release notes. Here's a couple of clips from pam.txt in the release notes: By default, IBM IDS will use the traditional authentication mechanism in order to avoid wide spread changes required by the users. PAM is supported on Solaris, Linux, both 32 and 64 bit, as applicable. On HP-UX and AIX, PAM is supported in 32 bit mode only. Good luck, Brian -----Original Message----- From: Jim Cramer [mailto:jcramer@engineering.uiowa.edu] Sent: Thursday, January 22, 2004 3:15 PM To: informix-list@iiug.org Subject: Is there P.A.M. or Kerberos authentication support in IDS? Hi all, We do not wish to use the age-old, insecure, arcane Unix login authentication method that hits against the /etc/passwd file when logging into our IDS servers. Instead, we would like to use a centralized, networked authentication/account server such as a Kerberos Domain Controller. Specifically, my question is: does anyone know of any support in Informix Dynamic Server for use of either P.A.M. (Pluggable Authentication Module) (Kerberos is one authentication plugin module that works with the PAM framework) or for Kerberos authentication? Any information about this would be greatly appreciated. Sincerely, Jim Cramer Data Base Administrator Computer Systems Support, College of Engineering, University of Iowa 1252 SC Iowa City, Iowa 52242 (319)335-5757 (319)384-0549 (fax) ------_=_NextPart_001_01C3E131.0EF65E60 Content-Type: text/html; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN"> <HTML> <HEAD> <META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; = charset=3Diso-8859-1"> <META NAME=3D"Generator" CONTENT=3D"MS Exchange Server version = 5.5.2654.45"> <TITLE>RE: Is there P.A.M. or Kerberos authentication support in = IDS?</TITLE> </HEAD> <BODY> <P><FONT SIZE=3D2>PAM is covered in depth in the release notes. Here's = a couple of clips</FONT> <BR><FONT SIZE=3D2>from pam.txt in the release notes:</FONT> </P> <P><FONT SIZE=3D2>By default, IBM IDS will use the traditional = authentication mechanism in order to avoid wide spread changes required = by the users.</FONT></P> <P><FONT SIZE=3D2>PAM is supported on Solaris, Linux, both 32 and 64 = bit, as applicable.</FONT> <BR><FONT SIZE=3D2>On HP-UX and AIX, PAM is supported in 32 bit mode = only.</FONT> </P> <P><FONT SIZE=3D2>Good luck,</FONT> </P> <P><FONT SIZE=3D2>Brian</FONT> </P> <P><FONT SIZE=3D2>-----Original Message-----</FONT> <BR><FONT SIZE=3D2>From: Jim Cramer [<A = HREF=3D"mailto:jcramer@engineering.uiowa.edu">mailto:jcramer@engineering= .uiowa.edu</A>]</FONT> <BR><FONT SIZE=3D2>Sent: Thursday, January 22, 2004 3:15 PM</FONT> <BR><FONT SIZE=3D2>To: informix-list@iiug.org</FONT> <BR><FONT SIZE=3D2>Subject: Is there P.A.M. or Kerberos authentication = support in IDS?</FONT> </P> <BR> <P><FONT SIZE=3D2>Hi all,</FONT> </P> <P><FONT SIZE=3D2>We do not wish to use the age-old, insecure, arcane = Unix login</FONT> </P> <P><FONT SIZE=3D2>authentication method that hits against the = /etc/passwd file when logging</FONT> <BR><FONT SIZE=3D2>into our</FONT> </P> <P><FONT SIZE=3D2>IDS servers.</FONT> </P> <P><FONT SIZE=3D2>Instead, we would like to use a centralized, = networked</FONT> <BR><FONT SIZE=3D2>authentication/account server such as</FONT> </P> <P><FONT SIZE=3D2>a Kerberos Domain Controller.</FONT> </P> <P><FONT SIZE=3D2>Specifically, my question is: does anyone know of any = support in Informix</FONT> <BR><FONT SIZE=3D2>Dynamic</FONT> </P> <P><FONT SIZE=3D2>Server for use of either P.A.M. (Pluggable = Authentication Module)</FONT> </P> <P><FONT SIZE=3D2>(Kerberos is one authentication plugin module that = works with the PAM</FONT> <BR><FONT SIZE=3D2>framework)</FONT> </P> <P><FONT SIZE=3D2>or for Kerberos authentication?</FONT> </P> <P><FONT SIZE=3D2>Any information about this would be greatly = appreciated.</FONT> </P> <BR> <BR> <P><FONT SIZE=3D2>Sincerely,</FONT> </P> <P><FONT SIZE=3D2>Jim Cramer</FONT> </P> <P><FONT SIZE=3D2>Data Base Administrator</FONT> </P> <P><FONT SIZE=3D2>Computer Systems Support,</FONT> </P> <P><FONT SIZE=3D2>College of Engineering,</FONT> </P> <P><FONT SIZE=3D2>University of Iowa</FONT> </P> <P><FONT SIZE=3D2>1252 SC</FONT> </P> <P><FONT SIZE=3D2>Iowa City, Iowa 52242</FONT> </P> <P><FONT SIZE=3D2>(319)335-5757</FONT> </P> <P><FONT SIZE=3D2>(319)384-0549 (fax)</FONT> </P> </BODY> </HTML> ------_=_NextPart_001_01C3E131.0EF65E60-- sending to informix-list