1 <!DOCTYPE html PUBLIC
"-//W3C//DTD XHTML 1.0 Strict//EN"
2 "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
5 <title>Petter Reinholdtsen: entries from April
2010</title>
6 <link rel=
"stylesheet" type=
"text/css" media=
"screen" href=
"../../../style.css">
7 <link rel=
"alternate" title=
"RSS Feed" href=
"04.rss" type=
"application/rss+xml">
14 <a href=
"../../../">Petter Reinholdtsen
</a>
20 <p>Entries from April
2010.
</p>
25 <a href=
"../../../Kerberos_for_Debian_Edu_Squeeze_.html">Kerberos for Debian Edu/Squeeze?
</a>
33 <p><a href=
"http://www.nuug.no/aktiviteter/20100413-kerberos/">Yesterdays
34 NUUG presentation
</a> about Kerberos was inspiring, and reminded me
35 about the need to start using Kerberos in Skolelinux. Setting up a
36 Kerberos server seem to be straight forward, and if we get this in
37 place a long time before the Squeeze version of Debian freezes, we
38 have a chance to migrate Skolelinux away from NFSv3 for the home
39 directories, and over to an architecture where the infrastructure do
40 not have to trust IP addresses and machines, and instead can trust
41 users and cryptographic keys instead.
</p>
43 <p>A challenge will be integration and administration. Is there a
44 Kerberos implementation for Debian where one can control the
45 administration access in Kerberos using LDAP groups? With it, the
46 school administration will have to maintain access control using flat
47 files on the main server, which give a huge potential for errors.
</p>
49 <p>A related question I would like to know is how well Kerberos and
50 pam-ccreds (offline password check) work together. Anyone know?
</p>
52 <p>Next step will be to use Kerberos for access control in Lwat and
53 Nagios. I have no idea how much work that will be to implement. We
54 would also need to document how to integrate with Windows AD, as such
55 shared network will require two Kerberos realms that need to cooperate
58 <p>I believe a good start would be to start using Kerberos on the
59 skolelinux.no machines, and this way get ourselves experience with
60 configuration and integration. A natural starting point would be
61 setting up ldap.skolelinux.no as the Kerberos server, and migrate the
62 rest of the machines from PAM via LDAP to PAM via Kerberos one at the
65 <p>If you would like to contribute to get this working in Skolelinux,
66 I recommend you to see the video recording from yesterdays NUUG
67 presentation, and start using Kerberos at home. The video show show
75 Tags:
<a href=
"../../../tags/debian edu">debian edu
</a>,
<a href=
"../../../tags/english">english
</a>,
<a href=
"../../../tags/nuug">nuug
</a>.
79 <div class=
"padding"></div>
83 <a href=
"../../../Great_book___Content__Selected_Essays_on_Technology__Creativity__Copyright__and_the_Future_of_the_Future_.html">Great book: "Content: Selected Essays on Technology, Creativity, Copyright, and the Future of the Future"
</a>
91 <p>The last few weeks i have had the pleasure of reading a
92 thought-provoking collection of essays by Cory Doctorow, on topics
93 touching copyright, virtual worlds, the future of man when the
94 conscience mind can be duplicated into a computer and many more. The
95 book titled "Content: Selected Essays on Technology, Creativity,
96 Copyright, and the Future of the Future" is available with few
97 restrictions on the web, for example from
98 <a href=
"http://craphound.com/content/">his own site
</a>. I read the
100 <a href=
"http://www.feedbooks.com/book/2883">feedbooks
</a> using
101 <a href=
"http://www.fbreader.org/">fbreader
</a> and my N810. I
102 strongly recommend this book.
</p>
109 Tags:
<a href=
"../../../tags/english">english
</a>,
<a href=
"../../../tags/fildeling">fildeling
</a>,
<a href=
"../../../tags/nuug">nuug
</a>,
<a href=
"../../../tags/opphavsrett">opphavsrett
</a>,
<a href=
"../../../tags/personvern">personvern
</a>,
<a href=
"../../../tags/sikkerhet">sikkerhet
</a>,
<a href=
"../../../tags/web">web
</a>.
113 <div class=
"padding"></div>
115 <p style=
"text-align: right;"><a href=
"04.rss"><img src=
"../../../xml.gif" alt=
"RSS Feed" width=
"36" height=
"14"></a></p>
127 <li><a href=
"../../../archive/2010/01/">January (
2)
</a></li>
129 <li><a href=
"../../../archive/2010/02/">February (
1)
</a></li>
131 <li><a href=
"../../../archive/2010/03/">March (
3)
</a></li>
133 <li><a href=
"../../../archive/2010/04/">April (
2)
</a></li>
140 <li><a href=
"../../../archive/2009/01/">January (
8)
</a></li>
142 <li><a href=
"../../../archive/2009/02/">February (
8)
</a></li>
144 <li><a href=
"../../../archive/2009/03/">March (
12)
</a></li>
146 <li><a href=
"../../../archive/2009/04/">April (
10)
</a></li>
148 <li><a href=
"../../../archive/2009/05/">May (
9)
</a></li>
150 <li><a href=
"../../../archive/2009/06/">June (
3)
</a></li>
152 <li><a href=
"../../../archive/2009/07/">July (
4)
</a></li>
154 <li><a href=
"../../../archive/2009/08/">August (
3)
</a></li>
156 <li><a href=
"../../../archive/2009/09/">September (
1)
</a></li>
158 <li><a href=
"../../../archive/2009/10/">October (
2)
</a></li>
160 <li><a href=
"../../../archive/2009/11/">November (
3)
</a></li>
162 <li><a href=
"../../../archive/2009/12/">December (
3)
</a></li>
169 <li><a href=
"../../../archive/2008/11/">November (
5)
</a></li>
171 <li><a href=
"../../../archive/2008/12/">December (
7)
</a></li>
182 <li><a href=
"../../../tags/3d-printer">3d-printer (
11)
</a></li>
184 <li><a href=
"../../../tags/amiga">amiga (
1)
</a></li>
186 <li><a href=
"../../../tags/aros">aros (
1)
</a></li>
188 <li><a href=
"../../../tags/debian">debian (
14)
</a></li>
190 <li><a href=
"../../../tags/debian edu">debian edu (
13)
</a></li>
192 <li><a href=
"../../../tags/english">english (
22)
</a></li>
194 <li><a href=
"../../../tags/fiksgatami">fiksgatami (
1)
</a></li>
196 <li><a href=
"../../../tags/fildeling">fildeling (
6)
</a></li>
198 <li><a href=
"../../../tags/kart">kart (
2)
</a></li>
200 <li><a href=
"../../../tags/lenker">lenker (
1)
</a></li>
202 <li><a href=
"../../../tags/ltsp">ltsp (
1)
</a></li>
204 <li><a href=
"../../../tags/multimedia">multimedia (
5)
</a></li>
206 <li><a href=
"../../../tags/norsk">norsk (
64)
</a></li>
208 <li><a href=
"../../../tags/nuug">nuug (
69)
</a></li>
210 <li><a href=
"../../../tags/opphavsrett">opphavsrett (
12)
</a></li>
212 <li><a href=
"../../../tags/personvern">personvern (
11)
</a></li>
214 <li><a href=
"../../../tags/reprap">reprap (
10)
</a></li>
216 <li><a href=
"../../../tags/rss">rss (
1)
</a></li>
218 <li><a href=
"../../../tags/sikkerhet">sikkerhet (
6)
</a></li>
220 <li><a href=
"../../../tags/standard">standard (
11)
</a></li>
222 <li><a href=
"../../../tags/stavekontroll">stavekontroll (
1)
</a></li>
224 <li><a href=
"../../../tags/video">video (
10)
</a></li>
226 <li><a href=
"../../../tags/vitenskap">vitenskap (
1)
</a></li>
228 <li><a href=
"../../../tags/web">web (
6)
</a></li>