John Tang Boyland <[email protected]> writes:

> Our institution uses "Shibboleth" for off campus authentication,
> since it keeps the AD (and thus kerberos) servers hidden behind
> a firewall.  Does anyone know how to have OpenAFS use Shibboleth
> for authentication?

Is there any reason you can't just open port 88 on the firewall to allow
Kerberos through?  Kerberos *is* a security protocol afterall, there is
no real reason to hide your Kerberos server completely behind a
firewall.

> John

-derek

-- 
       Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
       Member, MIT Student Information Processing Board  (SIPB)
       URL: http://web.mit.edu/warlord/    PP-ASEL-IA     N1NWH
       [email protected]                        PGP key available
_______________________________________________
OpenAFS-info mailing list
[email protected]
https://lists.openafs.org/mailman/listinfo/openafs-info

Reply via email to