OK I raised it as *Change Request ID*: 6902378 Thank you Markus ----- Original Message ----- From: "Will Fiveash" <william.five...@sun.com> To: "Markus Moeller" <huaraz at moeller.plus.com> Cc: "Will Fiveash" <William.Fiveash at Sun.COM>; <kerberos-discuss at opensolaris.org> Sent: Wednesday, November 18, 2009 4:40 AM Subject: Re: [kerberos-discuss] pam_krb5 for multi domain environments
> Try solaris/kerberosv5_bundled/pam. > > On Nov 17, 2009, at 2:07 PM, Markus Moeller wrote: > >> I tried to raise it as an RFE at >> http://bugs.opensolaris.org/bugdatabase/bugReport.do but when I select >> solaris/pam I am requires to select a subcategory which is not possible. >> Should I raise a bug that I can't raise an RFE ? >> >> Report a Bug >> .Subcategory is a required field. >> >> You can use this form to report a bug in OpenSolaris. Just enter the >> information below and click "Send". Before submitting a new bug, please >> search the bug database to ensure that the bug doesn't already exist. >> >> If you want to work on a solution for this change request, please send >> email requesting a sponsor for the work to >> request-sponsor at opensolaris.org . Your request should include the change >> request number, your name and your Sun Contributor Agreement number. >> >> Please Note: If you wish to view or file bugs against any OpenSolaris >> distribution, please use defect.opensolaris.org. >> >> Type: RFE X >> Bug >> >> Bug: A feature in the product that does not perform to the spec. A >> feature not present in the product which you feel should be added. >> Is this a security bug? Yes >> No X >> >> If you think this is a security bug, please go to the Sun Security >> Coordination Team page and determine if you should follow their process >> to report this bug. >> >> Category Select Category solaris/pam (Solaris Security) >> Subcategory Select Subcategory <= None available >> Release snv_111 >> >> Markus >> >> >> ----- Original Message ----- From: "Will Fiveash" >> <William.Fiveash at Sun.COM >> > >> To: "Markus Moeller" <huaraz at moeller.plus.com> >> Cc: "Will Fiveash" <William.Fiveash at Sun.COM>; >> <kerberos-discuss at opensolaris.org >> > >> Sent: Tuesday, November 17, 2009 2:07 AM >> Subject: Re: [kerberos-discuss] pam_krb5 for multi domain environments >> >> >>> Markus, >>> >>> Most of the Solaris Kerberos team is on vacation until Nov 29. We'll >>> discuss this issue when we get back. In the meantime feel free to >>> open a RFE (request for enhancement) CR (change request) similar to >>> the defect you opened earlier. >>> >>> On Nov 14, 2009, at 4:38 AM, Markus Moeller wrote: >>> >>>> What is Suns take on using a pam_krb5 option to allow login from >>>> multiple domains like Russ's pam_krb5 module with the realm option ? >>>> >>>> I have a setup where we have a Windows forest with two domains which >>>> trust each other. We can configure Kerberos enabled application to >>>> accept (e.g. ssh) users either from either domain (using >>>> auth_to_local). But we have also applications which just use pam and >>>> I would like that users from either domain can login. With Russ's >>>> module I can stack two pam_krb5 lines with two different realms. >>>> >>>> Are there other ways to achieve this ? Does Sun support user at domain >>>> as userid which would be possible if the general user lenght wouldn't >>>> be limited to 12 (I think) ? >>>> >>>> Thank you >>>> Markus >>>> _______________________________________________ >>>> kerberos-discuss mailing list >>>> kerberos-discuss at opensolaris.org >>>> http://mail.opensolaris.org/mailman/listinfo/kerberos-discuss >>> >>> -- >>> Will Fiveash >>> Sun Microsystems Inc. >>> Austin, TX, USA (TZ=CST6CDT) >>> >>> >> >> > > -- > Will Fiveash > Sun Microsystems Inc. > Austin, TX, USA (TZ=CST6CDT) > > >