[Freeipa-devel] LDAPI + autobind instead of Kerberos (for named)?

Simo Sorce simo at redhat.com
Thu Jun 19 16:59:47 UTC 2014


On Thu, 2014-06-19 at 09:23 -0600, Rich Megginson wrote:
> > and if we limit who can use it I don't think
> > anyone will be crying too much.
> 
> If we change it to be incompatible, we may break existing _389_ 
> customers, even if they are potentially using something that violates 
> RFC4513.

I am not proposing to change anything in 389ds, just the configuration
of the suffix to look at so we are not breaking any _389_ customer.

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-devel mailing list