Am Tue, 8 Jan 2019 15:15:39 -0500 schrieb [email protected]: > On Tue, Jan 8, 2019 at 3:27 AM Dieter Klünter <[email protected]> > wrote: > > > Am Mon, 7 Jan 2019 16:18:36 -0500 > > schrieb [email protected]: > > > > > I am using openldap proxy today with ldap backend. > > > > > > Any suggestions on how to use kerberos as the backend? > > > > > [...] > > > > Put it the other way round, use slapd as database backend to > > kerberos. > > https://web.mit.edu/kerberos/krb5-latest/doc/admin/conf_ldap.html > > > > > > OK, may be then what I am really looking for is a kerberos proxy. > > All my servers today sending ldap auth request to this ldap proxy and > we want to switch to kerberos auth instead. [...]
You may try to configure a passthrough authentication, using saslauthd. There are some configuration examples online. Note that this requires slapd to be compiled with '--enable-spasswd' -Dieter -- Dieter Klünter | Systemberatung http://sys4.de GPG Key ID: E9ED159B 53°37'09,95"N 10°08'02,42"E
