Kerberos + LDAP question

Greg Hudson ghudson at mit.edu
Thu Apr 30 12:54:46 EDT 2015


On 04/30/2015 09:08 AM, Pascal Jakobi wrote:
> 2/ If I create a principal in kadmin.local with its LDAP DN, "/*addprinc 
> -x dn="uid=test2,ou=people,dc=jakobi,dc=fr*//*" test2 at JAKOBI.FR*/", the 
> DN entry is updated with the kerberos info stuff (principal name, etc.) 
> - which is fine. However, the principal does not seem to be created in 
> the directory, but rather on the KDC.

Sorry, I don't understand what you mean by that last part.  The KDC
doesn't have any place to store principals other than in the directory,
in this configuration.  What are you seeing which leads to the statement
that the principal was not created in the directory?


More information about the krbdev mailing list