get groupid/privilege-level through pam/radius

This is a discussion on get groupid/privilege-level through pam/radius within the Linux Security forums, part of the System Security and Security Related category; Hi I am trying to use pam_radius_auth for authentication. I have this requirement that the access to the users should ...


Go Back   Usenet Forums > System Security and Security Related > Linux Security

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 12-18-2006
None
 
Posts: n/a
Default get groupid/privilege-level through pam/radius

Hi

I am trying to use pam_radius_auth for authentication. I have this
requirement that the access to the users should be controlled based on
their privilege level. However pam or radius does not seem to deal with
the issue of privilege level. I can try to get something like a group
id information from radius through vendor-specific-attributes. but
there doesnt seem to a standard function to retrieve the group id
(privilege level) from pam modules. I can potentially use environment
variables (pam_putenv/pam_setenv) to pass this information, but that
would require modifying all my applications like login,ftp etc. Would i
have to make something like a nss_radius if i want to do this(of course
i wont have the password information in the returned structure - just
put that in so people dont shout security breach).
Has any one faced a problem like this? Can somebody please give me
suggestions as to how i should go about implementing this radius based
authentication through pam. Please help

Thanks
Ganesh

Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 06:02 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0