LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
Search this Thread
Old 06-03-2005, 10:37 AM   #1
PenguinPwrdBox
Member
 
Registered: Oct 2003
Location: /illinois/chicago
Distribution: Slackware/Gentoo/FC/RHEL
Posts: 568

Rep: Reputation: 30
Active Directory, Kerberos, LDAP, PAM, and nsswitch


I'm curious as to why this is not behaving as expected......

I have an RHEL30 box that is configured so that all of it's AAA should be provided by AD.

Using nsswitch, I have configured LDAP to pull extended schema from AD for UIDs, GIDs, etc......and using getent passwd, I am able to see it perfectly.

However, I am attempting to use krb5 against AD for authentication, and for whatever reason, kerberos will not consult nsswitch to pull account info from LDAP. Therefore, it errors out unable to find the UID/GID username to consult against AD. Anyone done Kerberos with LDAP and nsswitch? If so, how to get kerb to consult LDAP for account info?

TIA?
 
Old 06-04-2005, 10:56 PM   #2
tyler_durden
Member
 
Registered: May 2001
Posts: 125

Rep: Reputation: 15
Logs? Ethereal Sniffs?
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Active Directory vs LDAP alex r Linux - Software 26 04-07-2010 05:47 AM
LDAP and Active Directory Ecalvam Linux - Networking 5 11-10-2005 09:53 AM
Postfix LDAP lookups with Active Directory paul_mat Linux - Networking 1 11-02-2005 09:44 PM
samba ldap winbindd kerberos with active directory errors xtrusion Linux - Software 0 03-21-2005 05:24 PM
migration from windows active directory to linux ldap spyghost Linux - Networking 1 08-01-2004 01:26 PM


All times are GMT -5. The time now is 02:36 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration