You may be interested in this:
http://www.georgetown.edu/giia/internet2/
and:
http://www.nd.edu/~eds/docs/edsarch.shtml

Both of these simply take the credentials passed during LDAP 
authentication, and send them off to the KDC for verification.

PADL's (http://padl.com) plugin, I believe, will do "true" kerberos 
authN, where a user with a pre-auth'd ticket can use those credentials 
to access information in the LDAP directory, without re-authN'ing.

I know Luke from PADL lurks in this Newsgroup, so I am sure he will have 
some more to contribute.
-Matt

J Davis wrote:
> Hello,
> 
> I'm a bit of a newbie when it comes to kerberos, and I'm trying to understand 
> integration of Sun's directory offering with kerberos. 
> 
> I've read the Sun documentation (or at least a large portion of it) for Sun 
> One/IPlanet and they indicate that there is the ability to integrate with Kerberos.  
> I can't figure out if this means that it's possible if you provide the plugin 
> yourself (with something like commercial PADL software), or if it's now available 
> through integration with Sun's implementation of kerberos SEAM.
> 
> Thanks!
> 
> Jennifer 
> ________________________________________________
> Kerberos mailing list           [EMAIL PROTECTED]
> https://mailman.mit.edu/mailman/listinfo/kerberos
> 

________________________________________________
Kerberos mailing list           [EMAIL PROTECTED]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to