Lists of LDAP requirements

Andrew Bartlett abartlet at samba.org
Tue Jul 18 02:26:51 EDT 2006


On Mon, 2006-07-17 at 17:37 -0400, Sam Hartman wrote:
> 
> HI.  Hi.  Two weeks ago I asked people interested in working on the
> LDAP plugin to send in the list of issues they want to see fixed for
> 1.6.
> 
> I have only seen MIT's list.
> 
> I was sort of expecting something from at least Sun and Novell.

I don't think this is really the kind of thing you were after, but I
would like to see the plugin able to read a Samba3-style LDAP entry, and
make a kerberos key from the sambaNTPwdHash (the arcfour-hmac-md5 key).

I used this with Heimdal for many years, and I think it provides a great
way to easily add kerberos to an existing Samba site.  (And therefore
make it easier for novice administrators, for whom the first reaction to
kerberos is 'I have to somehow get my user's cleartext passwords for
hashing'.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.                  http://redhat.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://mailman.mit.edu/pipermail/krbdev/attachments/20060718/b285de27/attachment.bin


More information about the krbdev mailing list