Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-30 Thread Jeff V. Merkey
Peter Samuelson wrote: > [AC] > > > Mind you, until its open source I'll stick with LDAP and kerberos. > > > For one I trust folks like Ted more to get it right. > > [Jeff Merkey] > > Who is Ted, BTW? > > Theodore Y. Ts'o. (You read linux-kernel, so I needn't elaborate.) > > Peter > - > To uns

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Peter Samuelson
[AC] > > Mind you, until its open source I'll stick with LDAP and kerberos. > > For one I trust folks like Ted more to get it right. [Jeff Merkey] > Who is Ted, BTW? Theodore Y. Ts'o. (You read linux-kernel, so I needn't elaborate.) Peter - To unsubscribe from this list: send the line "unsub

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Jeff V. Merkey
Alan Cox wrote: > > > What you are about to ship is like swiss cheese, and could render any > > Linux server a point of attack that will allow a hacker to get into a > > single server with a replica, then gain access to the entire Network. > > If it works as described then its already a swiss

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Alan Cox
> What you are about to ship is like swiss cheese, and could render any > Linux server a point of attack that will allow a hacker to get into a > single server with a replica, then gain access to the entire Network. If it works as described then its already a swiss cheese. You just need to put

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Jeff V. Merkey
The next email will educate you. Read it, then let me know. Jeff Alan Cox wrote: > > > and all the ability to use NWFS as a root file system, and I can include > > these IOCTL() calls for the Trustee Chains (where NDS permissions are > > stored for users) and User Nodes (which contain backlin

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Jeff V. Merkey
BTW. I have looked over what Novell has out at present, and what's there is basically totally insecure on Linux, and is vulerable to someone getting into a single server, then being able to download every single users passwords and data for all the replicated servers in a Network using eDirector

Re: eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Alan Cox
> and all the ability to use NWFS as a root file system, and I can include > these IOCTL() calls for the Trustee Chains (where NDS permissions are > stored for users) and User Nodes (which contain backlinks to quota > nodes). I dont know enough about these features to answer this. As far as sec

eDirectory Trustee and User Space IOCTL() in NWFS

2000-09-29 Thread Jeff V. Merkey
Alan, I have not provided the Trustee and User Space node IOCTL()'s in the current NWFS that posted, but they exist in the Ute-Linux version shipping Oct 1 that supports our NDS implementation. I talked to the Novell guys doing eDirectory on Linux at N+I, and at present, they emulate this stuff