concerns with ldap plugin and 1.5

Rahul Srinivas srahul at novell.com
Sat Jun 3 12:22:06 EDT 2006


Hi,
Principals are created by default under the realm's subtree (the
'subtree' argument to 'kdb5_ldap_util create') as service principals.
This can be overridden by one of the following database specific options
in 'kadmin'
1. userdn=<user_dn> : Specifies the user object with which the Kerberos
user principal is to be associated.
2. containerdn=<container_dn> : Specifies the container object under
which the Kerberos service principal is to be created.

-Rahul S.

>>> Sam Hartman <hartmans at mit.edu> 06/03/06 2:38 AM >>>
Hmm.  I think we may have a fairly significant misunderstanding here.

What happens if I put_principal some principal that does not exist
with the ldap backend?





More information about the krbdev mailing list