[22789] in Kerberos
Re: LDAP gateway for Kerberos
daemon@ATHENA.MIT.EDU (Donn Cave)
Sat Oct 30 00:17:27 2004
From: "Donn Cave" <donn@drizzle.com>
Date: Sat, 30 Oct 2004 04:08:35 -0000
Message-ID: <1099109313.846383@yasure>
To: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
Quoth halford2069@hotmail.com (talisman):
| is there such a thing as a ldap gateway for kerberos i.e.
|
| the ldap gateway piece of software accepts ldap searches and returns
| basic user info from kerberos, and accepts a bind and passes that
| through to kerberos and returns success/failure back to the ldap
| client?
You can find an LDAP implementation that supports Kerberos
authentication at http://www.openldap.org/ (plus Cyrus SASL),
and I imagine there are others. Such an implementation would
allow a client to use Kerberos credentials to authenticate
during bind.
The part about basic user info from Kerberos is not so obvious,
inasmuch as, in general, there isn't any useful user info there.
Some, maybe most, environments that use Kerberos also have a user
database with all kinds of information, but if that's what you
want, you'll have to ask about that (hypothetical) database.
Donn Cave, donn@drizzle.com
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos