sshd, SACL and LDAP
Hello,
I'm administrating my users with a LDAP server (not from Apple). I set up the Mac as a LDAP client. I can login at console as a user, who has its account in the LDAP Server.
Via ssh I can login as a local user and as a LDAP user.
But I have to change the option SACLSupport in the file /etc/sshd_config from "yes" to "no".
Is this a security risk?
How I configure the SACL preferences for LDAP users in MacOS?
Or how I configure the user entry regarding SACL in the LDAP server?
Thank you.
Petra Humann
awaiting a xserve intel with the actual MacOS Mac OS X (10.4)
I'm administrating my users with a LDAP server (not from Apple). I set up the Mac as a LDAP client. I can login at console as a user, who has its account in the LDAP Server.
Via ssh I can login as a local user and as a LDAP user.
But I have to change the option SACLSupport in the file /etc/sshd_config from "yes" to "no".
Is this a security risk?
How I configure the SACL preferences for LDAP users in MacOS?
Or how I configure the user entry regarding SACL in the LDAP server?
Thank you.
Petra Humann
awaiting a xserve intel with the actual MacOS Mac OS X (10.4)