[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Sheflug] gnome - nis - debian problem



On Mon, Mar 03, 2003 at 01:17:42AM +0000, Alan Dawson wrote:
> Quoting Dave Mitchell <davem [at] fdgroup.com>:
> > 2) that 'ypcat -k passwd.byuid' gives out a sensible listing,
> > 
> > 3) that 'ypmatch 500 passwd.byuid' gives an entry.
> > 
> > If all those work, then I dunno.
> 
> All work sensibly as root  should they as non-root?  
> 
> On my nis server i commented out some lines
> 
> *      : *     :passwd.byname  : port
> 
> *      : *     :passwd.byuid  : port
> 
> which denied access to those maps from unpriveliged ports.  So login
> process happened as root, but after authentication  I no longer got
> access to the maps!


Well, uncomment out those lines and see if the problem goes away!

You only really need to protect the shadow map from unprivileged access.

-- 
You never really learn to swear until you learn to drive.
___________________________________________________________________

Sheffield Linux User's Group -
http://www.sheflug.co.uk/mailfaq.html

  GNU the choice of a complete generation.