Multiple KDCs with OpenLDAP

Nico Williams nico at cryptonector.com
Thu May 24 08:50:34 EDT 2012


On Thu, May 24, 2012 at 5:46 AM, Oliver Loch <grimeton at gmx.net> wrote:
> Do I need to use the kprop tool if I want to run more than one KDC for the same realm or can both KDCs just access the same database inside the DIT of OpenLDAP at the same time?

If you use LDAP as the backend for the KDB then you do not need to use
kprop.  The LDAP DS implementation should have its own replication
facility.

Nico
--


More information about the Kerberos mailing list