Techniques for managing user identities in Linux
Maybe password security isn't perfect, but most networks depend on it. This month we examine some tools for smarter, more versatile authentication.
Despite years of constant high-tech innovation, the password remains a fundamental feature of most networks. Various tools let you consolidate, encrypt, sanitize, and synchronize passwords, but unless your company invests heavily in smart cards or other new age technologies, you'll eventually have to log in somewhere. This month we look at some techniques for supporting, securing, and simplifying user authentication in Linux.
Our first article examines some tools for authenticating users with one-time passwords. You'll learn why many organizations prefer passwords that change with every login. We then zero in for a look at OPIE and OTPW – a pair of open source solutions for one-time password authentication.
Many Linux users would rather not even think about Microsoft, but part of our mission has always been to let readers know about free, open source tools for easy integration with proprietary technologies. Our next article describes how Samba's Windbind service lets Linux clients participate in Microsoft's Active Directory environments.
We'll also discuss some options for creating password-protected pages for your website. We'll look at how the Apache web server handles authentication, we'll examine authentication alternatives based on SQL and LDAP, we'll show you how to create a custom authentication solution in Perl.
The final article describes how to use the OpenID service as a single authentication system for multiple web accounts. Read on for more on some great techniques for managing user identities in Linux.
Buy this article as PDF
Mozilla’s product think tank sinks silently into history.
TODO group will focus on open source tools in large-scale environments.
New tool will look like GParted but support a wider range of storage technologies.
New public key pinning feature will help prevent man-in-the-middle attacks.
Carnegie Mellon researchers say 3 million pages could fall down the phishing hole in the next year.
The US government rolls new best-practice rules for protecting SSH.
Klaus Knopper announces the latest version of his iconic Live Linux system.
All websites that use these popular CMS tools could be vulnerable to denial of service attacks if users don't install the updates.
According to a report, many potential victims of the Heartbleed attack have patched their systems, but few have cleaned up the crime scene to protect themselves from the effects of a previous intrusion.
DARPA and NICTA release the code for the ultra-secure microkernel system used in aerial drones.