MIT Kerberos with LDAP back-end

Vinayak Hegde hvinayak at novell.com
Tue Sep 27 11:49:21 GMT 2005


Hi,
 I am glad to share the news that LDAP back-end for MIT Kerberos is
almost ready. 
Clean-up and some testing is remaining. I will put it up on the web for
your reference
by end of next week.

The next step for me is to work on Password synchronization for
integrating 
Samba-3 & MIT Kerberos.
As the Kerberos LDAP Schema is not standardized, I see that Heimdal and
MIT 
Kerberos are differing in some ways. Kerberos Principal Name is one of
them.

"krb5PrincipalName" is the attribute name in the Heimdal (hdb.schema)
and 
"krbPrincipalName" is the one in MIT Kerberos.

Is it okay to assume that this difference can be handled somewhat
easily in 
Samba3 code?

Cheers,
Vinayak


More information about the samba-technical mailing list