[Freeipa-devel] [PATCH] 0061 Use authenticated binds in init scripts

Simo Sorce ssorce at redhat.com
Wed Jan 19 00:02:23 UTC 2011


We need to use authenticated lda binds in init scripts as otherwise
starting components fails when the option to restrict anonymous access
to ldap is set.

In order to do that we need to also start the KDC unconditionally, so
it has been removed form the list of services retrieved from ldap and
always started/stopped/restarted explicitly in the script.
This is necessary so the script can obtain kerberos credentials to bind
to ds using its keytab.

Fixes ticket #795

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York
-------------- next part --------------
A non-text attachment was scrubbed...
Name: freeipa-simo-0061-Use-authenticated-connections-to-ldap.patch
Type: text/x-patch
Size: 7069 bytes
Desc: not available
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20110118/c34d883c/attachment.bin>


More information about the Freeipa-devel mailing list