[Freeipa-users] kerberos principals for service accounts (cn=etc, cn=sysaccounts)

Stephen Ingram sbingram at gmail.com
Fri Jun 15 07:10:37 UTC 2012


Is it possible for accounts in cn=etc,cn=sysaccounts to have kerberos
principals or must you use the cn=accounts,cn=users container? I'm
thinking this for script-authenticated machine accounts (might be of
form user-hostname at REALM or user/hostname at REALM) that need to
authenticate to another machine and just a way to separate them from
the regular user accounts in cn=accounts,cn=users.

Steve




More information about the Freeipa-users mailing list