> Apologies, I should have made clear that the ADS > functionality needs to cover both: > > 1. LDAP directory + > 2. Windows Domain functionality that supports special > Windows client logon support (that in fact also > requires a bunch of special DNS records that are not > native to BIND) + Kerberos Single Sign On > functionality. > > From everything I have read it seems that for Windows > clients to logon to an LDAP directory requires > installing additional software on each client PC + > they lose the advantages of Kerberos SSO.
Then I should be the one to apologize -- I misunderstoor your intent. I understood that you wanted to move away from Windows -- for me that means ditching *all* Windows into oblivion. My company has no Windows, and I have to say that we're much better off for it. No problems and no headaches, it's great. This message posted from opensolaris.org _______________________________________________ opensolaris-discuss mailing list [email protected]
