i have the following situation:

OpenLDAP with user entries. No userPassword hashes are available.
MIT Kerberos with principals and password hashes in the KRB DB.

I have migrated the user and group accounts via "ipa migrate-ds ..."

Now, is it possible to get out the kerberos user principal password
hashes from the KRB own DB to the appropriate krbPassword..... IPA LDAP
attribute, so the users could login without any extra user action ?


