Markus, Most of the Solaris Kerberos team is on vacation until Nov 29. We'll discuss this issue when we get back. In the meantime feel free to open a RFE (request for enhancement) CR (change request) similar to the defect you opened earlier.
On Nov 14, 2009, at 4:38 AM, Markus Moeller wrote: > What is Suns take on using a pam_krb5 option to allow login from > multiple domains like Russ's pam_krb5 module with the realm option ? > > I have a setup where we have a Windows forest with two domains which > trust each other. We can configure Kerberos enabled application to > accept (e.g. ssh) users either from either domain (using > auth_to_local). But we have also applications which just use pam and > I would like that users from either domain can login. With Russ's > module I can stack two pam_krb5 lines with two different realms. > > Are there other ways to achieve this ? Does Sun support user at domain > as userid which would be possible if the general user lenght > wouldn't be limited to 12 (I think) ? > > Thank you > Markus > _______________________________________________ > kerberos-discuss mailing list > kerberos-discuss at opensolaris.org > http://mail.opensolaris.org/mailman/listinfo/kerberos-discuss -- Will Fiveash Sun Microsystems Inc. Austin, TX, USA (TZ=CST6CDT)