On Nov 25, 2007 8:40 AM, Amir Saad <[EMAIL PROTECTED]> wrote:
>
> I use MIT Kerberos 5 & OpenLDAP to manage my network users. I can login 
> successfully to all machines using my Kerberos principal. I need to create a 
> limited account that is able to access only a few hosts/services not all 
> machines/services. How can I do this?

It is not too flexible, but search for pam_groupdn and pam_member_attribute.

Javier Palacios
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to