[22784] in Kerberos

home help back first fref pref prev next nref lref last post

Re: KfW Integrated Logon

daemon@ATHENA.MIT.EDU (Maurice Massar)
Fri Oct 29 16:58:06 2004

From: Maurice Massar <massar@unix-ag.uni-kl.de>
Date: Fri, 29 Oct 2004 18:50:14 +0000 (UTC)
Message-ID: <slrnco5476.3vp.massar@sushi.unix-ag.uni-kl.de>
To: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu

hi,

On 2004-10-29, Jeffrey Altman <jaltman2@nyc.rr.com> wrote:
>> is it possible with KfW to do an "Integrated Logon" like OpenAFS does?
>> What I want to do, is logon to a samba3 Domain, and getting kerberos
>> tickets using the same username and password automatically.
>
> You need to configure Windows to obtain the Kerberos tickets for
> you at login time.  Then KFW will obtain the tickets from the Windows

I want to do a samba domain-logon, so I can not use a windows non-ms-kdc
logon, or?

> Logon Session.  At the present time there is no secure method by which
> a Network Provider can obtain Kerberos tickets for you via KFW and
> pass them into the Logon Session for use by your applications.

does that mean what openafs is optionally doing, can not be done secure?
Or do I have to wait until samba4 is ready with kerberos support?

cu
maurice
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post