Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-08-05 Thread Harry Schmalzbauer
Bezüglich Jan Bramkamp's Nachricht vom 13.06.2016 14:46 (localtime): > > > On 10/06/16 16:29, Peter Wemm wrote: >> On 6/9/16 6:49 PM, Matthew Seaman wrote: >>> On 09/06/2016 18:34, Craig Rodrigues wrote: There is still value to ypldap as it is now, and getting feedback from users (especi

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-21 Thread Alan Somers
On Tue, Jun 21, 2016 at 9:55 AM, Jan Bramkamp wrote: > On 18/06/16 17:15, Alan Somers wrote: >> >> On Thu, Jun 16, 2016 at 7:20 AM, Chris H wrote: >>> >>> On Wed, 15 Jun 2016 08:03:55 -0400 Nikolai Lifanov >>> >>> wrote >>> On 06/14/2016 21:05, Marcelo Araujo wrote: > > 2016-06-15 8

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-21 Thread Jan Bramkamp
On 18/06/16 17:15, Alan Somers wrote: On Thu, Jun 16, 2016 at 7:20 AM, Chris H wrote: On Wed, 15 Jun 2016 08:03:55 -0400 Nikolai Lifanov wrote On 06/14/2016 21:05, Marcelo Araujo wrote: 2016-06-15 8:17 GMT+08:00 Chris H : On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo wrote Hey, Tha

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-18 Thread Alan Somers
On Thu, Jun 16, 2016 at 7:20 AM, Chris H wrote: > On Wed, 15 Jun 2016 08:03:55 -0400 Nikolai Lifanov > wrote > >> On 06/14/2016 21:05, Marcelo Araujo wrote: >> > 2016-06-15 8:17 GMT+08:00 Chris H : >> > >> >> On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo >> >> wrote >> >> >> >>> Hey, >> >>> >

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-16 Thread Chris H
On Wed, 15 Jun 2016 08:03:55 -0400 Nikolai Lifanov wrote > On 06/14/2016 21:05, Marcelo Araujo wrote: > > 2016-06-15 8:17 GMT+08:00 Chris H : > > > >> On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo > >> wrote > >> > >>> Hey, > >>> > >>> Thanks for the CFT Craig. > >>> > >>> 2016-06-09 14:41 G

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-15 Thread Marcelo Araujo
I hear too!!! And that is why we are having this talk here around ypldap. Best, 2016-06-16 10:50 GMT+08:00 Outback Dingo : > > > On Wed, Jun 15, 2016 at 10:15 PM, Marcelo Araujo > wrote: > >> No worries Nikolai! If one day I will do it, will be on 12-RELEASE. >> >> Br, >> >> 2016-06-15 20:03 GM

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-15 Thread Outback Dingo
On Wed, Jun 15, 2016 at 10:15 PM, Marcelo Araujo wrote: > No worries Nikolai! If one day I will do it, will be on 12-RELEASE. > > Br, > > 2016-06-15 20:03 GMT+08:00 Nikolai Lifanov : > > > On 06/14/2016 21:05, Marcelo Araujo wrote: > > > 2016-06-15 8:17 GMT+08:00 Chris H : > > > > > >> On Thu, 9

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-15 Thread Marcelo Araujo
No worries Nikolai! If one day I will do it, will be on 12-RELEASE. Br, 2016-06-15 20:03 GMT+08:00 Nikolai Lifanov : > On 06/14/2016 21:05, Marcelo Araujo wrote: > > 2016-06-15 8:17 GMT+08:00 Chris H : > > > >> On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo < > araujobsdp...@gmail.com> > >> wr

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-15 Thread Nikolai Lifanov
On 06/14/2016 21:05, Marcelo Araujo wrote: > 2016-06-15 8:17 GMT+08:00 Chris H : > >> On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo >> wrote >> >>> Hey, >>> >>> Thanks for the CFT Craig. >>> >>> 2016-06-09 14:41 GMT+08:00 Xin Li : >>> On 6/8/16 23:10, Craig Rodrigues wrote:

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-15 Thread Daniel Braniss
> On 15 Jun 2016, at 04:22, David Wolfskill wrote: > > On Tue, Jun 14, 2016 at 05:17:19PM -0700, Chris H wrote: >> ... >> Honestly, I think the best way to motivate people to do the right thing(tm) >> Would be to remove Yellow Pages from the tree, entirely. :-) >> It's been dead for *years*, and

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-14 Thread David Wolfskill
On Tue, Jun 14, 2016 at 05:17:19PM -0700, Chris H wrote: > ... > Honestly, I think the best way to motivate people to do the right thing(tm) > Would be to remove Yellow Pages from the tree, entirely. :-) > It's been dead for *years*, and as you say, isn't safe, anyway.. > "Safe" for what, pre

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-14 Thread Marcelo Araujo
2016-06-15 8:17 GMT+08:00 Chris H : > On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo > wrote > > > Hey, > > > > Thanks for the CFT Craig. > > > > 2016-06-09 14:41 GMT+08:00 Xin Li : > > > > > > > > > > > On 6/8/16 23:10, Craig Rodrigues wrote: > > > > Hi, > > > > > > > > I have worked with Marc

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-14 Thread Chris H
On Thu, 9 Jun 2016 17:55:58 +0800 Marcelo Araujo wrote > Hey, > > Thanks for the CFT Craig. > > 2016-06-09 14:41 GMT+08:00 Xin Li : > > > > > > > On 6/8/16 23:10, Craig Rodrigues wrote: > > > Hi, > > > > > > I have worked with Marcelo Araujo to port OpenBSD's ypldap to FreeBSD > > > current. >

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-14 Thread Eric van Gyzen
On 06/ 9/16 05:49 PM, Matthew Seaman wrote: > On 09/06/2016 18:34, Craig Rodrigues wrote: >> There is still value to ypldap as it is now, and getting feedback from >> users (especially Active Directory) would be very useful. >> If someone could document a configuration which uses IPSEC or OpenSSH >

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-13 Thread Jan Bramkamp
On 10/06/16 16:29, Peter Wemm wrote: On 6/9/16 6:49 PM, Matthew Seaman wrote: On 09/06/2016 18:34, Craig Rodrigues wrote: There is still value to ypldap as it is now, and getting feedback from users (especially Active Directory) would be very useful. If someone could document a configuration

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-10 Thread Peter Wemm
On 6/9/16 6:49 PM, Matthew Seaman wrote: On 09/06/2016 18:34, Craig Rodrigues wrote: There is still value to ypldap as it is now, and getting feedback from users (especially Active Directory) would be very useful. If someone could document a configuration which uses IPSEC or OpenSSH forwarding,

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-09 Thread Matthew Seaman
On 09/06/2016 18:34, Craig Rodrigues wrote: > There is still value to ypldap as it is now, and getting feedback from > users (especially Active Directory) would be very useful. > If someone could document a configuration which uses IPSEC or OpenSSH > forwarding, that would be nice. > > In future,

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-09 Thread Craig Rodrigues
On Wed, Jun 8, 2016 at 11:41 PM, Xin Li wrote: > > (I think the current implementation > would do everything with plaintext protocol over wire, so while it > You are correct. This document http://puffysecurity.com/wiki/ypldap.html#2 states: # # ypldap cant use SSL or SASL... # You

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-09 Thread Marcelo Araujo
Hey, Thanks for the CFT Craig. 2016-06-09 14:41 GMT+08:00 Xin Li : > > > On 6/8/16 23:10, Craig Rodrigues wrote: > > Hi, > > > > I have worked with Marcelo Araujo to port OpenBSD's ypldap to FreeBSD > > current. > > > > In latest current, it should be possible to put in /etc/rc.conf: > > > > nis

Re: [CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-08 Thread Xin Li
On 6/8/16 23:10, Craig Rodrigues wrote: > Hi, > > I have worked with Marcelo Araujo to port OpenBSD's ypldap to FreeBSD > current. > > In latest current, it should be possible to put in /etc/rc.conf: > > nis_ypldap_enable="YES" > to activate the ypldap daemon. > > When set up properly, it sho

[CFT] ypldap testing against OpenLDAP and Microsoft Active Directory

2016-06-08 Thread Craig Rodrigues
Hi, I have worked with Marcelo Araujo to port OpenBSD's ypldap to FreeBSD current. In latest current, it should be possible to put in /etc/rc.conf: nis_ypldap_enable="YES" to activate the ypldap daemon. When set up properly, it should be possible to log into FreeBSD, and have the backend passwo