Help with SASL/GSSAPI to remote Kerberos server

Jeffrey Altman jaltman at secure-endpoints.com
Tue Feb 19 20:16:17 EST 2008


Let me rephrase what you are attempting to do.  You want to authenticate 
the LDAP query from the Samba client to the OpenLDAP server by sending a 
username and password from Samba to OpenLDAP over a TLS protected 
connection using SASL.

Instead of the LDAP server storing the password and using that for 
authentication, you want to have the LDAP server ask the Kerberos KDC if 
the password is valid. 

Please confirm that this is your desire.


-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3355 bytes
Desc: S/MIME Cryptographic Signature
Url : http://mailman.mit.edu/pipermail/kerberos/attachments/20080219/11a62e6a/attachment.bin


More information about the Kerberos mailing list