[24058] in Kerberos

home help back first fref pref prev next nref lref last post

Kerberos, Samba3, Authldap

daemon@ATHENA.MIT.EDU (Harold A. Mackey)
Fri Jun 10 17:21:29 2005

Message-Id: <200506101424.j5AEOgnr023786@flopsy.musc.edu>
From: "Harold A. Mackey" <mackey@musc.edu>
To: <kerberos@mit.edu>
Date: Fri, 10 Jun 2005 10:24:42 -0400
MIME-Version: 1.0
X-MailScanner-From: mackey@musc.edu
Content-Type: text/plain;
	charset="US-ASCII"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Folks

Here at MUSC we have an authLdap system and Samba for filesharing. I am
trying to get these people to consider putting up a KDC rather than use
samba hashes. Trouble is, AD is a leper amongst the faithful, and they are
saying that Samba3 will not work with Kerberos authentication:

                                       ____________

WinClient-------------------------|                    |

MacOSX Client-----------------| authldap       |---------------------|

*NixClient------------------|__________|              ___|__________


       |                                                                  |
|                                

       |_________________________________| KDC                  |

        |
|_____________| 

        |

        |

        |___________________________________________________________Samba3
box                     

 

 

 

 

I have seen and am trying to config my AD domain to pass tickets to my
FreeBSD server, but can I use authldap as the 'ad' element and still provide
tickets that a Samba3 server will accept? The Samba shares reside on a Sun
box, and ldap is on Linux. 

 

Something like this, but for win/mac clients also.

 

https://sec.miljovern.no/bin/view/Info/HeimdalKerberosSambaAndOpenLdap

 

 

 

 

 

Many Thanks,

Harold A. Mackey

MUSC Digestive Disease Center

210 Jonathan Lucas Street  Suite 210

Charleston, SC 29425

Ph. 843-792-4858

Fx. 843-792-4184

 

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post