[19168] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: Kerberos + LDAP question

daemon@ATHENA.MIT.EDU (Greg Hudson)
Thu Apr 30 12:54:57 2015

Message-ID: <55425E56.6040806@mit.edu>
Date: Thu, 30 Apr 2015 12:54:46 -0400
From: Greg Hudson <ghudson@mit.edu>
MIME-Version: 1.0
To: Pascal Jakobi <pascal.jakobi@gmail.com>, krbdev@mit.edu
In-Reply-To: <55422947.2070406@gmail.com>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

On 04/30/2015 09:08 AM, Pascal Jakobi wrote:
> 2/ If I create a principal in kadmin.local with its LDAP DN, "/*addprinc 
> -x dn="uid=test2,ou=people,dc=jakobi,dc=fr*//*" test2@JAKOBI.FR*/", the 
> DN entry is updated with the kerberos info stuff (principal name, etc.) 
> - which is fine. However, the principal does not seem to be created in 
> the directory, but rather on the KDC.

Sorry, I don't understand what you mean by that last part.  The KDC
doesn't have any place to store principals other than in the directory,
in this configuration.  What are you seeing which leads to the statement
that the principal was not created in the directory?
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post