Re: [netatalk-admins] denying access


Subject: Re: [netatalk-admins] denying access
From: Edan Idzerda (edan@mtu.edu)
Date: Wed Jan 21 1998 - 08:04:55 EST


On Wed, 21 Jan 1998, Peter Bolmehag wrote:
> I have netatalk running. When someone gets an account they automatically
> are able to log in to the machine via netatalk. I want to be able to shut
> out certain users. How?

Oooh, this might be tricky. You should be able to disable netatalk
logins by setting their shell to something not specified in
/etc/shells--or whatever getusershell() on your machine looks
in.

But that will probably be they can't login via telnet either.

If you want to disallow logins from the Mac side and the unix side,
easy. If you want to allow unix logins but not allow Mac connections...
Hmmm. I don't know if you can do that.

It wouldn't be too difficult to add another check in auth.c to
kick out certain users, but I don't know what the critieria
would be so I don't have a solution in mind.

In other news, I've made a few updates to my baby-FAQ for netatalk on
Solaris 2. It's not a tremendous amount of research, but I think
it's becoming a good pointer for new Solaris users. That's primarily
what I would like it to become.

- edan

--
Edan Idzerda	<edan@mtu.edu>
System Administrator --  Michigan Technological University, Houghton MI USA



This archive was generated by hypermail 2b28 : Sat Dec 18 1999 - 16:30:29 EST