libapache2-mod-auth-kerb and cross-realm

Jaap Winius jwinius at umrk.nl
Wed Aug 13 20:49:47 EDT 2014


On Tue, 12 Aug 2014 18:41:20 -0700, Russ Allbery wrote:

>> Do you mean an auth_to_local mapping in krb5.conf?
> 
> Yes -- I think there are multiple different ways to do it, and it
> changes between MIT and Heimdal, but that's the right place to be
> looking.

Unfortunately, this doesn't work. At first I thought I could get away 
with using simply 'auth_to_local = DEFAULT', but apparently auth_to_local 
mappings can only be applied to principals from the default realm.



More information about the Kerberos mailing list