176 lines
6.5 KiB
HTML
176 lines
6.5 KiB
HTML
<!--startcut ======================================================= -->
|
|
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
|
|
<html>
|
|
<head>
|
|
<META NAME="generator" CONTENT="lgazmail v1.1pre6">
|
|
<TITLE>The Answer Guy 29: TACACS and RADIUS Authentication Models for
|
|
Linux and/or PAM</TITLE>
|
|
</head>
|
|
|
|
<BODY BGCOLOR="#FFFFFF" TEXT="#000000" LINK="#0000FF" VLINK="#A000A0"
|
|
ALINK="#FF0000">
|
|
<!--endcut ========================================================= -->
|
|
<H4>"Linux Gazette...<I>making Linux just a little more fun!</I>"
|
|
</H4>
|
|
<P> <hr> <P>
|
|
|
|
<!-- =============================================================== -->
|
|
<H1 align="center"><A NAME="answer">
|
|
<img src="../gx/dennis/qbubble.gif" alt="" border="0" align="middle">
|
|
<a href="./index.html">The Answer Guy</a>
|
|
<img src="../gx/dennis/bbubble.gif" alt="" border="0" align="middle">
|
|
</A></H1> <BR>
|
|
<H4 align="center">By James T. Dennis,
|
|
<a href="mailto:linux-questions-only@ssc.com">linux-questions-only@ssc.com</a><BR>
|
|
Starshine Technical Services,
|
|
<A HREF="http://www.starshine.org/">http://www.starshine.org/</A> </H4>
|
|
<p><hr><p>
|
|
<H3><img src="../gx/dennis/qbub.gif" alt="(?)" width="50" height="28"
|
|
align="left" border="0">TACACS and RADIUS Authentication Models
|
|
for Linux and/or PAM</H3>
|
|
|
|
<p><strong>From Alexander Belov on 01 May 1998
|
|
|
|
<br><br>
|
|
Hello!
|
|
|
|
<br><br>
|
|
I'm looking for TACACS+ client software for Linux. I mean software like
|
|
portslave (RADIUS) which able to send
|
|
Authentication-Authorization-Accounting requests to TACACS+ server.
|
|
Is there such software?
|
|
|
|
</strong></p>
|
|
<blockquote><img src="../gx/dennis/bbub.gif" width="50" height="28" alt="(!)"
|
|
align="left" border="0">
|
|
The first place I would look for a
|
|
<a href="http://www.easynet.de/tacacs-faq/">TACACS</a>, XTACACS,
|
|
or TACACS+ deamon is:
|
|
|
|
<br><br>
|
|
<a href="http://www.easynet.de/tacacs-faq/tacacs-faq-32.html"
|
|
>http://www.easynet.de/tacacs-faq/tacacs-faq-32.html</a>
|
|
|
|
<br><br>
|
|
It should point to some reasonably portable code.
|
|
(TACACS is an authentication service supported by
|
|
Cisco, <a href="http://www.cis.ohio-state.edu/htbin/rfc/rfc2138.html"
|
|
>RADIUS</a> is a similar "remote authentication for dial in user
|
|
services" or something like that. I've heard of both being
|
|
supported under Linux. These protocols are principally used by
|
|
ISP's and by in the remote access systems of large business.
|
|
They are typically used as a protocol between a terminal server
|
|
and the hosts to which handle the accounting and authentication
|
|
for those devices).
|
|
|
|
<br><br>
|
|
Another place I'd look for any Linux authentication services
|
|
would be:
|
|
|
|
<br><br>
|
|
<a href="http://www.kernel.org/pub/linux/libs/pam/modules.html"
|
|
>http://www.kernel.org/pub/linux/libs/pam/modules.html</a>
|
|
|
|
<br><br>
|
|
I see some RADIUS modules there -- but no mention of a
|
|
TACACS for PAM. I saw a reference to one copy that
|
|
was working --- but following that URL now leads to a
|
|
terse message that the PAM modules that used to be there
|
|
are now "out of date" and that they would re-appear when
|
|
the author had time to update them. No joy there.
|
|
|
|
<br><br>
|
|
Meanwhile there are a couple of good links to be had
|
|
from DejaNews (that were either not at Yahoo! or were
|
|
buried too deep for me to find):
|
|
|
|
<br><br>
|
|
On Steve Frampton's "Linux Administration Made Easy :-p"
|
|
pages at: <a href="http://qlink.queensu.ca/~3srf/linux-admin/"
|
|
>http://qlink.queensu.ca/~3srf/linux-admin/</a> he has a page on
|
|
Authentication with TACACS
|
|
(<a href="http://qlink.queensu.ca/~3srf/linux-admin/linux-admin-made-easy-6.html">http://qlink.queensu.ca/~3srf/linux-admin/linux-admin-made-easy-6.html</a>)
|
|
|
|
<br><br>
|
|
There he mentions (links) to an ftp site with the "Vikas"
|
|
version of the <tt>xtacacsd</tt>. I dug around a bit (guessing HTTP
|
|
URL's from the given FTP link) and found the:
|
|
|
|
<br><dl>
|
|
<dt>Netplex Technologies Inc. Home Page
|
|
<dd><a href="http://www.navya.com/">http://www.navya.com/</a>
|
|
</dl>
|
|
|
|
</blockquote>
|
|
<p><strong><img src="../gx/dennis/qbub.gif" width="50" height="28" alt="(?)"
|
|
align="left" border="0">
|
|
Thank You Very Much
|
|
<br>Alexander Belov
|
|
|
|
</strong></p>
|
|
<blockquote><img src="../gx/dennis/bbub.gif" width="50" height="28" alt="(!)"
|
|
align="left" border="0">
|
|
I hope that helps. Somewhere in that morass I'm sure
|
|
there's a way to get it all working.
|
|
|
|
</blockquote>
|
|
|
|
<!--================================================================-->
|
|
<P> <hr> <P>
|
|
<H5 align="center"><a href="http://www.linuxgazette.com/copying.html"
|
|
>Copyright ©</a> 1998, James T. Dennis <BR>
|
|
Published in <I>Linux Gazette</I> Issue 29 June 1998</H5>
|
|
<P> <hr>
|
|
<!--================================================================-->
|
|
<p align="center"><table width="95%"><tr align="center">
|
|
<td rowspan="4"><A HREF="lg_answer29.html"><IMG
|
|
SRC="../gx/dennis/answernew.gif"
|
|
ALT="[ Answer Guy Index ]"i
|
|
align="left"></A></td>
|
|
</tr><tr align="center">
|
|
|
|
<!-- begins -->
|
|
<td><A HREF="tag_versions.html">versions</A></td>
|
|
<td><A HREF="tag_lilo.html">lilo</A></td>
|
|
<td><A HREF="tag_virtdom.html">virtdom</a></td>
|
|
<td><A HREF="tag_kernel.html">kernel</A></td>
|
|
<td><A HREF="tag_winmodem.html">winmodem</a></td>
|
|
<td><A HREF="tag_basicmail.html">basicmail</a></td>
|
|
<td><A HREF="tag_betterbak.html">betterbak</a></td>
|
|
</tr><tr align="center">
|
|
|
|
<td><A HREF="tag_shadow.html">shadow</a></td>
|
|
<td><A HREF="tag_dell.html">dell</a></td>
|
|
<td><A HREF="tag_dumbterm.html">dumbterm</a></td>
|
|
<td><A HREF="tag_whylinux.html">whylinux</a></td>
|
|
<td><A HREF="tag_redhat.html">redhat</a></td>
|
|
<td><A HREF="tag_netcard.html">netcard</a></td>
|
|
<td><A HREF="tag_macrovir.html">macrovir</a></td>
|
|
</tr><tr align="center">
|
|
|
|
<td><A HREF="tag_newlook.html">newlook</a></td>
|
|
<td><A HREF="tag_tacacs.html">tacacs</a></td>
|
|
<td><A HREF="tag_sendmail.html">sendmail</a></td>
|
|
<td><A HREF="tag_dialdppp.html">dialdppp</a></td>
|
|
<td><A HREF="tag_ppp233.html">ppp233</a></td>
|
|
<td><A HREF="tag_msmail.html">msmail</a></td>
|
|
<td><A HREF="tag_procmail.html">procmail</a></td>
|
|
<!-- ends -->
|
|
</tr></table>
|
|
|
|
</P> <hr> <P>
|
|
<!--================================================================-->
|
|
<A HREF="./index.html"><IMG SRC="../gx/indexnew.gif"
|
|
ALT="[ Table Of Contents ]"></A>
|
|
<A HREF="../index.html"><IMG SRC="../gx/homenew.gif"
|
|
ALT="[ Front Page ]"></A>
|
|
<A HREF="lg_bytes29.html"><IMG SRC="../gx/back2.gif"
|
|
ALT="[ Previous Section ]"></A>
|
|
<A HREF="./hamilton.html"><IMG SRC="../gx/fwd.gif"
|
|
ALT="[ Next Section ]"></A>
|
|
<!--startcut ======================================================= -->
|
|
</body>
|
|
</html>
|
|
<!--endcut ========================================================= -->
|
|
|