None of Nis, Yp or SSH really do this properly.

What you're really after is an authentication system like Kerberos.

However there are a number of catches like the existence of both 
v4 and v5 and the lack of kerberized clients and services. In theory 
what windows uses is Kerberos with a few bells and whistles. I 
thought I'd read about integrating unix authentication with windows 
domain logon somewhere (NetBSD documentation ?).


