Re: [Freeipa-users] Re: 389-ds and AD integration questions

2009-09-23 Thread Prashanth Sundaram
Thanks Dimitri, I was clarified about the setup yesterday. Looks like, I do not need Kerberos implemented for PAM Pass-through. Since IPA is to be a domain controller, is it necessary to implement Kerberos for server and clients? Since, I only need Unix hosts to talk to the DC? I mean can I

Re: [Freeipa-users] Re: 389-ds and AD integration questions

2009-09-23 Thread Dmitri Pal
Prashanth Sundaram wrote: Thanks Dimitri, I was clarified about the setup yesterday. Looks like, I do not need Kerberos implemented for PAM Pass-through. Since IPA is to be a domain controller, is it necessary to implement Kerberos for server and clients? Since, I only need Unix hosts to

Re: [Freeipa-users] Re: 389-ds and AD integration questions

2009-09-21 Thread Prashanth Sundaram
On 9/21/09 12:56 PM, Rich Megginson rmegg...@redhat.com wrote: Dear FreeIPA community, I have a bunch of requirements that I am looking forward from ipa-server. Please clarify if these are possible Background: We are planning to deploy 389-ds(formerly Fedora DS) as our core ldap