[30110] in Kerberos
Re: SSO
daemon@ATHENA.MIT.EDU (=?ISO-8859-1?Q?Michael_Str=F6der?=)
Thu Jul 17 15:49:01 2008
From: =?ISO-8859-1?Q?Michael_Str=F6der?= <michael@stroeder.com>
Date: Thu, 17 Jul 2008 17:22:51 +0200
Message-ID: <bn44l5-bek.ln1@nb2.stroeder.com>
Mime-Version: 1.0
X-Complaints-To: usenet-abuse@t-online.de
In-Reply-To: <mailman.169.1216306892.2966.kerberos@mit.edu>
To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
Sharad Desai wrote:
>> You may want to search for SPNEGO and mod_auth_kerb. Windows IE and IIS
>> have SPNEGO built in, and can use the Kerberos in Active Directory.
>> Apache can use mod_auth_kerb that supports SPNEGO. With FireFox 2 on any
>> platform
>> see the about:config and the network.negotiate-auth.trusted-uris option.
>
> I would have definitely considered this, but the group that I am working
> with does not want to include AD in any solution.
It works with any Kerberos KDC.
I'm using CAS (http://www.ja-sig.org/products/cas/) for SPNEGO/Kerberos
with fall-back to LDAP bind.
Ciao, Michael.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos