[ale] How LDAP works with authentication

Christopher Fowler cfowler at outpostsentinel.com
Wed Oct 12 20:42:15 EDT 2005


On Wed, 2005-10-12 at 20:27 -0400, Jason Day wrote:
> You don't need to retrieve bob's password hash and compare it, you
> just
> send bob's username and password to the LDAP server and let the server
> do the authentication.  If you can do SSL, then you can use an SSL
> LDAP
> URL and you don't have to worry about sending the username and
> password
> in plain text to the LDAP server.

You've answered my question about retrieval of the password.  This will
not work with getpwnam().  I will have to implement something like PAM
and integrate in all code that does auth.






More information about the Ale mailing list