[29864] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Open LDAP VS Kerberos : help needed

daemon@ATHENA.MIT.EDU (Ken Raeburn)
Thu May 22 11:36:41 2008

From: Ken Raeburn <raeburn@mit.edu>
To: Anshuman Hazarika <anshuman_hazarika@yahoo.co.uk>
In-Reply-To: <207198.37257.qm@web27901.mail.ukl.yahoo.com>
Message-Id: <65A618F7-A044-4A0C-A9CA-14E4B2B01B0E@mit.edu>
Mime-Version: 1.0 (Apple Message framework v919.2)
Date: Thu, 22 May 2008 11:35:42 -0400
Cc: anshuman.hazarika@ftindia.com, kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On May 22, 2008, at 07:18, Anshuman Hazarika wrote:
> I now know that we can make kerberos use openldap as its data store  
> backend, but only with heimdal as our kdc, not mit kerberos.

Why do you think MIT Kerberos can't do that?

Our current release has LDAP database support.  I'm not really an  
expert on the use of LDAP, though, so aside from just pointing you at  
some documentation, I can't give you a lot of specific advice.

http://web.mit.edu/kerberos/krb5-1.6/krb5-1.6.3/doc/krb5-admin.html#Configuring-Kerberos-with-OpenLDAP-back_002dend

If you're using a version of MIT Kerberos included by an operating  
system vendor, it may or may not be recent enough to have the LDAP  
support, and the LDAP support may or may not have been compiled...

-- 
Ken Raeburn, Senior Programmer
MIT Kerberos Consortium

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post