[19223] in Kerberos

home help back first fref pref prev next nref lref last post

Mapping users in KSETUP vs. Active Directory

daemon@ATHENA.MIT.EDU (Andrew Riley)
Fri May 9 17:59:49 2003

Message-ID: <000801c31676$306763e0$cbc55b80@upennisc.iscnet.upenn.edu>
From: "Andrew Riley" <ariley@isc.upenn.edu>
To: <kerberos@mit.edu>
Date: Fri, 9 May 2003 17:58:56 -0400
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On a windows 2000 server running active directory, we are
doing pass-thru
authentication to an MIT KDC.

when users are mapped in active directory they can log in
fine using their
kerberos principal, either locally on the server or at a
workstation.  but if
the user is mapped using KSETUP.EXE it only works locally on
the server.  not at a
workstation attached to the domain.  any ideas?

The thing i'm trying to do is have it map all kerberos
principals to a single account on the domain controller.  I
can't figure out how to do that in AD.  in KSETUP it just
lets you use a wildcard.

thanks
andrew


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post