single sign on question

From: Adams, Jonathan K. [C] (Jonathan.K.Adams@nga.mil)
Date: Tue Mar 15 2005 - 09:43:06 EST


Okay....

Here is the situation....

There is a configured and working Active Directory windows domain up and
running.... We have NIS+ for the unix machines, and would like to move to
LDAP. I have investigated this and found it isn't very difficult to
accomplish this... the sticking point is that there is a requirement for
single sign-on between the windows and unix boxes....

to me kerberos seems to be the obvious answer... but my question is this,
how can LDAP (SunOne) and Kerberos co-exist? I need LDAP to keep accounts
for services like mail and ftp, but I need Kerberos for cross-realm
authentication...

is there a simple solution to this? I have googled extensively on the
subject and not come back with much substance.
_______________________________________________
sunmanagers mailing list
sunmanagers@sunmanagers.org
http://www.sunmanagers.org/mailman/listinfo/sunmanagers



This archive was generated by hypermail 2.1.7 : Wed Apr 09 2008 - 23:30:21 EDT