|
|
Log in / Subscribe / Register

Unplugging old batteries

Unplugging old batteries

Posted Jun 7, 2018 16:22 UTC (Thu) by smoogen (subscriber, #97)
In reply to: Unplugging old batteries by paulj
Parent article: Unplugging old batteries

Agreed. The issue with ldap is that the out of the box implementations are rarely 'run make in this directory and everyone now has updated hosts, groups, services, etc etc' from whatever you have on your master box. It is usually set up this service, go to this webservice, add this thing, etc


to post comments

Unplugging old batteries

Posted Jun 8, 2018 7:40 UTC (Fri) by epa (subscriber, #39769) [Link] (3 responses)

It all seems a lot of complexity when you can just push out the new passwd and groups files (etc) with scp.

Unplugging old batteries

Posted Jun 8, 2018 15:22 UTC (Fri) by nix (subscriber, #2304) [Link] (2 responses)

Why is there never any love for Hesiod? All you need for that is a nameserver! (Is it just that it's so simple that there's no need for supporting tooling, so there's no need for elaborate marketing campaigns? Also it was written decades ago so it must be obsolete...)

Unplugging old batteries

Posted Jun 8, 2018 15:43 UTC (Fri) by paulj (subscriber, #341) [Link] (1 responses)

Never realised Hesiod was that easy to setup. Downside might be that DNS can be harder to secure. ?

Unplugging old batteries

Posted Jun 8, 2018 17:59 UTC (Fri) by nix (subscriber, #2304) [Link]

Yeah, Hesiod dates from a kinder era -- you'd need local DNSSEC if you wanted to be secure against local-network DNS spoofers. However, for a lot of us that is a non-issue: anyone who could spoof my DNS could also interfere with my NFS traffic, etc...


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds