ACM Home Page
Please provide us with feedback. Feedback
One user, one password: integrating unix accounts and active directory
Full text PdfPdf (142 KB)
Source User Services Conference archive
Proceedings of the 30th annual ACM SIGUCCS conference on User services table of contents
Providence, Rhode Island, USA
Pages: 5 - 8  
Year of Publication: 2002
ISBN:1-58113-564-5
Authors
David J. Blezard  University of New Hampshire, Durham, NH
Jerry Marceau  University of New Hampshire, Durham, NH
Sponsors
SIGUCCS: ACM Special Interest Group on University and College Computing Services
ACM: Association for Computing Machinery
Publisher
ACM  New York, NY, USA
Bibliometrics
Downloads (6 Weeks): 10,   Downloads (12 Months): 53,   Citation Count: 0
Additional Information:

abstract   references   index terms   collaborative colleagues  

Tools and Actions: Request Permissions Request Permissions    Review this Article  
DOI Bookmark: Use this link to bookmark this Article: http://doi.acm.org/10.1145/588646.588648
What is a DOI?

ABSTRACT

The University of New Hampshire has a history of using centralized Unix accounts to authenticate user access to computers in the public Student Computing Clusters. The advent of Windows 2000 meant that changes would be necessary to support the Active Directory architecture underlying Windows 2000 authentication and authorization. Given limited resources, manually maintaining Active Directory accounts for over 12000 students is an impossibility. A new system was needed to automatically generate an Active Directory account for each and every Unix user and to synchronize password and other account information with as little system administrator intervention as possible. Using a combination of technology from Microsoft and various scripts developed within the UNH Computing and Information Services group, we have created just such a system. For every newly created Unix account, an Active Directory account with an identical user name is generated. Password changes on the Unix systems pass the corresponding password update to the Active Directory domain controllers to assure that the accounts remain synchronized. This system has functioned for a full academic year with only minimal issues. With this infrastructure in place, we hope to be able to leverage it in other fashions.


REFERENCES

Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.

 
1
Active Directory Service Interfaces. http://msdn.microsoft.com/library/en-us/netdir/adsi/active_directory_service_interfaces_adsi.asp.
 
2
 
3
Samba. http://www.samba.org/.
 
4
Samba Development Road Map. http://us1.samba.org/samba/development.html.
 
5
Services for Unix. http://www.microsoft.com/windows/sfu/.

Collaborative Colleagues:
David J. Blezard: colleagues
Jerry Marceau: colleagues