[Freeipa-devel] LDAP binds, service principals, etc.

Simo Sorce ssorce at redhat.com
Fri Oct 26 22:03:28 UTC 2007


On Fri, 2007-10-26 at 17:35 -0400, John Dennis wrote:
> Karl MacMillan wrote:
> > On Fri, 2007-10-26 at 17:21 -0400, John Dennis wrote:
> >> John Dennis wrote:
> >> I recalled Karl was working on a general mechanism, is that right?
> 
> > Yes - we're working on the mechanism right now, but it will be a few
> > days at least. You should just generate by hand using kadmin.local for
> > testing.
> 
> Thanks, that what I thought. Now, as to my other question, any service 
> which is part of IPA is going to have to be modified to use SASL, yes/no?

I am working toward a bad hack to allow simple binds but still using the
kdc to do authorization.
For testing, if you need a simple bind (ie user/pass) just create an
account like we do for uid=kdc

Simo.




More information about the Freeipa-devel mailing list