Single sign-on infrastructure (FC5 wish)

Mike MacCana mikem at cyber.com.au
Wed Jun 22 08:49:58 UTC 2005


On Tue, 2005-06-21 at 10:11 -0500, Jason L Tibbitts III wrote:
> >>>>> "AB" == Alexander Boström <abo at kth.se> writes:
> 
> AB> I don't know how that works but I must say I'm very sceptical,
> AB> mostly from a security standpoint. What's the advantage of doing
> AB> it that way?
> 
> A single replication infrastructure.  I use the MIT KDC because it's
> what Red Hat happens to ship, but I'd much rather have everything in
> LDAP instead of having two separate systems to configure and maintain.

So Heimdal can use an LDAP data store? Sweet. Thanks so much for your
post. 

I've wanted MIT krb5 to do this (in a non hacky way) for ages.

Can Heimdal do Kerberos over TCP, and does it support MS specific
encryption types, like MIT Kerberos does?

Mike





More information about the fedora-devel-list mailing list