AD vs OpenDirectory | ||||||
posted by Joel Braby on March 9, 2015, 11:34 a.m. | ||||||
| ||||||
Thread Tags: security | ||||||
|
I have a legacy openLDAP/SMB system that is currently broken in interesting ways and rather than spending more time fixing it I'd like to move to a computer and user authentication system that will be easier to manage and be more friendly to Windows, Mac and Linux. Currently it looks like my two best options are to move to an Active Directory domain, or move to Open Directory with pGina for Windows authentication. We have ~80% Windows clients, and the rest are Mac OS X or Linux. We have a few services (RoyalRender, backup daemons) that run as Domain service users now. And our primary storage is running Linux with SMB. Mostly I am looking for pros/cons on AD and OpenDirectory, and which way you would go if you were starting over on your domain. And what horrible things have happened with either authentication server. |