Markus,

Most of the Solaris Kerberos team is on vacation until Nov 29.  We'll  
discuss this issue when we get back.  In the meantime feel free to  
open a RFE (request for enhancement) CR (change request) similar to  
the defect you opened earlier.

On Nov 14, 2009, at 4:38 AM, Markus Moeller wrote:

> What is Suns take on using a pam_krb5 option to allow login from  
> multiple domains like Russ's pam_krb5 module with the realm option ?
>
> I have a setup where we have a Windows forest with two domains which  
> trust each other. We can configure Kerberos enabled application to  
> accept (e.g. ssh) users either from either domain (using  
> auth_to_local). But we have also applications which just use pam and  
> I would like that users from either domain can login. With Russ's  
> module I can stack two pam_krb5 lines with two different realms.
>
> Are there other ways to achieve this ?  Does Sun support user at domain  
> as userid which would be possible if the general user lenght  
> wouldn't be limited to 12 (I think) ?
>
> Thank you
> Markus
> _______________________________________________
> kerberos-discuss mailing list
> kerberos-discuss at opensolaris.org
> http://mail.opensolaris.org/mailman/listinfo/kerberos-discuss

-- 
Will Fiveash
Sun Microsystems Inc.
Austin, TX, USA (TZ=CST6CDT)


Reply via email to