14.02.2014 Views

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Samba Security<br />

The ntpassword and lmpassword attributes should be treated as clear<br />

text equivalents of the user's password. The method used to encrypt the<br />

password and produce these strings is easily reversed.<br />

Only administrators should have access to these values and they should<br />

only be transferred over a network with additional encryption (SSL,<br />

TLS, VPN, etc...)<br />

The safest solutions is to apply the following ACL directive:<br />

access to attrs=lmPassword,ntPassword<br />

by 'cn=samba,ou=SystemAccounts,dc=Whitemice,dc=Org' write<br />

by self write<br />

by * auth

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!