On Sat, Oct 2, 2010 at 9:02 PM, Iain Morris iain.t.morris@gmail.com wrote:
No one seems to like AD. I actually find it to be fairly manageable compared to stock LDAP/Kerberos. The management tools blow OpenLDAP out of the water. I laugh at myself saying it, but if you want simple management of a big installation, AD is pretty dang tested these days and it's not hard to integrate other systems in that environment if you have admin control of the schema.
As long as we are recommending non-CentOS, non-Linux systems, I'd like to mention OS X Server as a good GUI, works-straight-out-of-the-box implementation of OpenLDAP...