Try solaris/kerberosv5_bundled/pam. On Nov 17, 2009, at 2:07 PM, Markus Moeller wrote:
> I tried to raise it as an RFE at > http://bugs.opensolaris.org/bugdatabase/bugReport.do > but when I select solaris/pam I am requires to select a subcategory > which is not possible. Should I raise a bug that I can't raise an > RFE ? > > Report a Bug > .Subcategory is a required field. > > You can use this form to report a bug in OpenSolaris. Just enter the > information below and click "Send". Before submitting a new bug, > please search the bug database to ensure that the bug doesn't > already exist. > > If you want to work on a solution for this change request, please > send email requesting a sponsor for the work to request-sponsor at > opensolaris.org > . Your request should include the change request number, your name > and your Sun Contributor Agreement number. > > Please Note: If you wish to view or file bugs against any > OpenSolaris distribution, please use defect.opensolaris.org. > > Type: RFE X > Bug > > Bug: A feature in the product that does not perform to the spec. A > feature not present in the product which you feel should be added. > Is this a security bug? Yes > No X > > If you think this is a security bug, please go to the Sun Security > Coordination Team page and determine if you should follow their > process to report this bug. > > Category Select Category solaris/pam (Solaris Security) > Subcategory Select Subcategory <= None available > Release snv_111 > > Markus > > > ----- Original Message ----- From: "Will Fiveash" <William.Fiveash at Sun.COM > > > To: "Markus Moeller" <huaraz at moeller.plus.com> > Cc: "Will Fiveash" <William.Fiveash at Sun.COM>; <kerberos-discuss at > opensolaris.org > > > Sent: Tuesday, November 17, 2009 2:07 AM > Subject: Re: [kerberos-discuss] pam_krb5 for multi domain environments > > >> Markus, >> >> Most of the Solaris Kerberos team is on vacation until Nov 29. >> We'll discuss this issue when we get back. In the meantime feel >> free to open a RFE (request for enhancement) CR (change request) >> similar to the defect you opened earlier. >> >> On Nov 14, 2009, at 4:38 AM, Markus Moeller wrote: >> >>> What is Suns take on using a pam_krb5 option to allow login from >>> multiple domains like Russ's pam_krb5 module with the realm option ? >>> >>> I have a setup where we have a Windows forest with two domains >>> which trust each other. We can configure Kerberos enabled >>> application to accept (e.g. ssh) users either from either domain >>> (using auth_to_local). But we have also applications which just >>> use pam and I would like that users from either domain can login. >>> With Russ's module I can stack two pam_krb5 lines with two >>> different realms. >>> >>> Are there other ways to achieve this ? Does Sun support >>> user at domain as userid which would be possible if the general user >>> lenght wouldn't be limited to 12 (I think) ? >>> >>> Thank you >>> Markus >>> _______________________________________________ >>> kerberos-discuss mailing list >>> kerberos-discuss at opensolaris.org >>> http://mail.opensolaris.org/mailman/listinfo/kerberos-discuss >> >> -- >> Will Fiveash >> Sun Microsystems Inc. >> Austin, TX, USA (TZ=CST6CDT) >> >> > > -- Will Fiveash Sun Microsystems Inc. Austin, TX, USA (TZ=CST6CDT)