w2k client login to kerberos realm

Tony Hoyle tmh at nodomain.org
Mon Nov 11 15:24:33 EST 2002


On Mon, 11 Nov 2002 11:45:26 +0000, Brian Thompson wrote:


> According to Luke this is theoretically possible:
> 
> http://groups.google.com/groups?dq=&hl=en&lr=&ie=UTF-8&frame=right&rnum=11&thl=1010052362,1009746294,1011410969,1011406245,1011372638,1011287500,1011279568,1011265813,1011263816,1011252848,1011250716,1011242826&seekm=anfmmn%243f3%241%40sisko.nodomain.org#link12
> 
I can't see how, based on the Microsoft documentation, although Luke knows
more about what the protocol is capable of.

In any case it would be the KDC that would have to pass the AD
authentication information - maybe he was referring to the patched heimdal
he did for samba?

Tony



More information about the Kerberos mailing list