RFC: runtime-selectable auth modules for Cyrus

Henrique de Moraes Holschuh hmh at debian.org
Thu Dec 19 16:34:08 EST 2002


On Thu, 19 Dec 2002, Rob Siemborski wrote:
> > Well, I have been looking at lib/auth*, and at the auth_ldap patch.  I want
> > to be able to somehow switch the auth backend Cyrus uses at runtime  --  the
> 
> Have you taken a look at auth_pts in 2.2?  It basically outsources both

Not yet, no.  I haven't had the time to package 2.2 yet :(

> canonicalization and group lookups to an external process, which is
> perhaps the overall easiest way of doing this (though I do see future
> versions of Cyrus/SASL making better use of canon_user SASL plugins and
> auxprop plugins).

Looks good, as long as master IS taking care of such an process, and can
restart it if it dies for any reason.  Actually, I am not using idled right
now for this same reason...

> I also have an LDAP module working for this system, but not configurable
> yet (so if anyone wants to authorize using the CMU LDAP server, it'll work
> for them ;)

Neat! :-)

-- 
  "One disk to rule them all, One disk to find them. One disk to bring
  them all and in the darkness grind them. In the Land of Redmond
  where the shadows lie." -- The Silicon Valley Tarot
  Henrique Holschuh




More information about the Info-cyrus mailing list