<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments for bits | andy smith&#039;s blog</title>
	<atom:link href="http://andys.org.uk/bits/comments/feed/" rel="self" type="application/rss+xml" />
	<link>http://andys.org.uk/bits</link>
	<description>random stuff from the mind of a twenty-something professional geek</description>
	<lastBuildDate>Tue, 23 Feb 2010 18:04:20 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>Comment on The Great White North by andys</title>
		<link>http://andys.org.uk/bits/2010/02/22/the-great-white-north/comment-page-1/#comment-40</link>
		<dc:creator>andys</dc:creator>
		<pubDate>Tue, 23 Feb 2010 18:04:20 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=52#comment-40</guid>
		<description>Good luck to you too, dude!

Like I say, it&#039;s all plans and speculation at the moment - it could be months, or (much more likely) it could be years - but if we don&#039;t try I&#039;ve got a feeling we&#039;ll regret it later on in life.</description>
		<content:encoded><![CDATA[<p>Good luck to you too, dude!</p>
<p>Like I say, it&#8217;s all plans and speculation at the moment &#8211; it could be months, or (much more likely) it could be years &#8211; but if we don&#8217;t try I&#8217;ve got a feeling we&#8217;ll regret it later on in life.</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on The Great White North by Simon wheatcroft</title>
		<link>http://andys.org.uk/bits/2010/02/22/the-great-white-north/comment-page-1/#comment-38</link>
		<dc:creator>Simon wheatcroft</dc:creator>
		<pubDate>Tue, 23 Feb 2010 11:26:32 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=52#comment-38</guid>
		<description>Hey man, good luck with all this sounds exciting for sure. 

It&#039;s something me and sian have spoke about to. I am in the process of heading to uni to obtain a degree.  So I am attacking at a slightly different angle to yourself.  Who knows one day we may all be out there!</description>
		<content:encoded><![CDATA[<p>Hey man, good luck with all this sounds exciting for sure. </p>
<p>It&#8217;s something me and sian have spoke about to. I am in the process of heading to uni to obtain a degree.  So I am attacking at a slightly different angle to yourself.  Who knows one day we may all be out there!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Authenticating Active Directory users on Linux with Likewise Open by andys</title>
		<link>http://andys.org.uk/bits/2010/01/28/likewise-open-and-linux/comment-page-1/#comment-35</link>
		<dc:creator>andys</dc:creator>
		<pubDate>Mon, 22 Feb 2010 14:57:54 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=20#comment-35</guid>
		<description>Hi Yvo,

Thanks for that - I&#039;ve updated the post with a link to your hint.

Cheers!</description>
		<content:encoded><![CDATA[<p>Hi Yvo,</p>
<p>Thanks for that &#8211; I&#8217;ve updated the post with a link to your hint.</p>
<p>Cheers!</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on GnuPG &#8211; RSA key-pair mini-Howto with stronger digests by andys</title>
		<link>http://andys.org.uk/bits/2010/02/02/gnupg-rsa-key-pair-mini-howto/comment-page-1/#comment-34</link>
		<dc:creator>andys</dc:creator>
		<pubDate>Mon, 22 Feb 2010 14:55:07 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=29#comment-34</guid>
		<description>Hi Tyler,

I&#039;ve just noticed that they are on mine, too. I reposted it from my old site, and I must have missed out a few lines when checking they all fitted in. I&#039;ll update it later on today!

Cheers for the tip and for the feedback :-)</description>
		<content:encoded><![CDATA[<p>Hi Tyler,</p>
<p>I&#8217;ve just noticed that they are on mine, too. I reposted it from my old site, and I must have missed out a few lines when checking they all fitted in. I&#8217;ll update it later on today!</p>
<p>Cheers for the tip and for the feedback <img src='http://andys.org.uk/bits/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on GnuPG &#8211; RSA key-pair mini-Howto with stronger digests by Tyler Oderkirk</title>
		<link>http://andys.org.uk/bits/2010/02/02/gnupg-rsa-key-pair-mini-howto/comment-page-1/#comment-31</link>
		<dc:creator>Tyler Oderkirk</dc:creator>
		<pubDate>Mon, 22 Feb 2010 04:05:40 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=29#comment-31</guid>
		<description>Andy- 

Thanks for posting this handy article - just what I needed. Nitpick: some examples were truncated in my Chrome+Linux environment. E.g &quot;Command&gt; setpref SHA512 SHA384 SHA256 SHA224 AES256 AES192 AES CAST5 Z&quot;

Keep up the good work,

-Tyler</description>
		<content:encoded><![CDATA[<p>Andy- </p>
<p>Thanks for posting this handy article &#8211; just what I needed. Nitpick: some examples were truncated in my Chrome+Linux environment. E.g &#8220;Command&gt; setpref SHA512 SHA384 SHA256 SHA224 AES256 AES192 AES CAST5 Z&#8221;</p>
<p>Keep up the good work,</p>
<p>-Tyler</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Authenticating Active Directory users on Linux with Likewise Open by Yvo van Doorn</title>
		<link>http://andys.org.uk/bits/2010/01/28/likewise-open-and-linux/comment-page-1/#comment-30</link>
		<dc:creator>Yvo van Doorn</dc:creator>
		<pubDate>Mon, 22 Feb 2010 01:02:30 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=20#comment-30</guid>
		<description>If you want to get rid of the DOMAIN\ part…
edit the following file:
“vi /etc/likewise/lsassd.conf”
Find the line that says “assume-default-domain”
and set it to true or uncomment depending on the version of likewise.
It’s best to reboot after this just to deal with the change.
PS. This only works when your user account and computer account are part of the same domain</description>
		<content:encoded><![CDATA[<p>If you want to get rid of the DOMAIN\ part…<br />
edit the following file:<br />
“vi /etc/likewise/lsassd.conf”<br />
Find the line that says “assume-default-domain”<br />
and set it to true or uncomment depending on the version of likewise.<br />
It’s best to reboot after this just to deal with the change.<br />
PS. This only works when your user account and computer account are part of the same domain</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on GnuPG &#8211; RSA key-pair mini-Howto with stronger digests by Tim Cuthbertson</title>
		<link>http://andys.org.uk/bits/2010/02/02/gnupg-rsa-key-pair-mini-howto/comment-page-1/#comment-23</link>
		<dc:creator>Tim Cuthbertson</dc:creator>
		<pubDate>Sun, 14 Feb 2010 22:18:13 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=29#comment-23</guid>
		<description>Thank you for an excellent article. I have been searching for two days for something to help me understand how to implement good and usable security keys. This article did it for me.

Tim</description>
		<content:encoded><![CDATA[<p>Thank you for an excellent article. I have been searching for two days for something to help me understand how to implement good and usable security keys. This article did it for me.</p>
<p>Tim</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Authenticating Active Directory users on Linux with Likewise Open by andys</title>
		<link>http://andys.org.uk/bits/2010/01/28/likewise-open-and-linux/comment-page-1/#comment-18</link>
		<dc:creator>andys</dc:creator>
		<pubDate>Tue, 02 Feb 2010 17:20:19 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=20#comment-18</guid>
		<description>Ooh... I wonder if it&#039;s baulking at the backslashes.

You can specify usernames in the form &lt;code&gt;user@domain&lt;/code&gt; (so &lt;code&gt;tso940@domain&lt;/code&gt; in your example) - that might work?

Failing that, try just specifying the UID (again, in your case 1115247694).</description>
		<content:encoded><![CDATA[<p>Ooh&#8230; I wonder if it&#8217;s baulking at the backslashes.</p>
<p>You can specify usernames in the form <code>user@domain</code> (so <code>tso940@domain</code> in your example) &#8211; that might work?</p>
<p>Failing that, try just specifying the UID (again, in your case 1115247694).</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Authenticating Active Directory users on Linux with Likewise Open by Jon</title>
		<link>http://andys.org.uk/bits/2010/01/28/likewise-open-and-linux/comment-page-1/#comment-17</link>
		<dc:creator>Jon</dc:creator>
		<pubDate>Tue, 02 Feb 2010 16:55:54 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=20#comment-17</guid>
		<description>Thanks for the pointer.

We don&#039;t usually configure users with more than 8 characters for application compatibility but I&#039;ve changed my AIX 5.3 system to accept a 20 character user and although this works ok:

root@utajona2:/ # id domain\\tso940
uid=1115247694(domain\tso940) gid=1115161089(domain\domain^users) groups=1115243261(domain\cs-gpounrestricteduser),1115317722(domain\jlbrallowedrodcpasswordreplicationgroup),1115294180(domain\wrbrallowedrodcpasswordreplicationgroup),1115161766(domain\g_gpo-s-u^unres)

when I run the command to add my domain user to the local ldap group again, I get another (different) error:

root@utajona2:/ # usermod -G domain\\domain^users,domain\\cs-gpounrestricteduser,domain\\jlbrallowedrodcpasswordreplicationgroup,domain\\wrbrallowedrodcpasswordreplicationgroup,domain\\g_gpo-s-u^unres,ldap domain\\tso940

3004-687 User &quot;domaintso940&quot; does not exist.

Something malformed there...

Jon</description>
		<content:encoded><![CDATA[<p>Thanks for the pointer.</p>
<p>We don&#8217;t usually configure users with more than 8 characters for application compatibility but I&#8217;ve changed my AIX 5.3 system to accept a 20 character user and although this works ok:</p>
<p>root@utajona2:/ # id domain\\tso940<br />
uid=1115247694(domain\tso940) gid=1115161089(domain\domain^users) groups=1115243261(domain\cs-gpounrestricteduser),1115317722(domain\jlbrallowedrodcpasswordreplicationgroup),1115294180(domain\wrbrallowedrodcpasswordreplicationgroup),1115161766(domain\g_gpo-s-u^unres)</p>
<p>when I run the command to add my domain user to the local ldap group again, I get another (different) error:</p>
<p>root@utajona2:/ # usermod -G domain\\domain^users,domain\\cs-gpounrestricteduser,domain\\jlbrallowedrodcpasswordreplicationgroup,domain\\wrbrallowedrodcpasswordreplicationgroup,domain\\g_gpo-s-u^unres,ldap domain\\tso940</p>
<p>3004-687 User &#8220;domaintso940&#8243; does not exist.</p>
<p>Something malformed there&#8230;</p>
<p>Jon</p>
]]></content:encoded>
	</item>
	<item>
		<title>Comment on Authenticating Active Directory users on Linux with Likewise Open by andys</title>
		<link>http://andys.org.uk/bits/2010/01/28/likewise-open-and-linux/comment-page-1/#comment-16</link>
		<dc:creator>andys</dc:creator>
		<pubDate>Tue, 02 Feb 2010 14:50:34 +0000</pubDate>
		<guid isPermaLink="false">http://andys.org.uk/bits/?p=20#comment-16</guid>
		<description>Ah - I think that is the problem :-/

I&#039;m not sure on the limit these days under Linux - a quick Google suggests at least 32 characters is fine.

&lt;a href=&quot;http://www.unix.com/aix/56417-username-more-than-8-characters.html&quot; rel=&quot;nofollow&quot;&gt;This page&lt;/a&gt; seems to suggest that the limit in AIX was 8 character up until one of the 5.x releases, but it&#039;s now 255 characters...</description>
		<content:encoded><![CDATA[<p>Ah &#8211; I think that is the problem :-/</p>
<p>I&#8217;m not sure on the limit these days under Linux &#8211; a quick Google suggests at least 32 characters is fine.</p>
<p><a href="http://www.unix.com/aix/56417-username-more-than-8-characters.html" rel="nofollow">This page</a> seems to suggest that the limit in AIX was 8 character up until one of the 5.x releases, but it&#8217;s now 255 characters&#8230;</p>
]]></content:encoded>
	</item>
</channel>
</rss>
