[Date Prev][Date Next]
RE: krb5 support w/o SASL?
> -----Original Message-----
> From: owner-openldap-software@OpenLDAP.org
> [mailto:owner-openldap-software@OpenLDAP.org]On Behalf Of Dave Snoopy
> Can the OpenLDAP client utilities be compiled to have
> kerberos5 support, without using SASL?
No. The SASL mechanism is the only defined way to use Kerberos with LDAP.
> SASL uses shared-object files which are dynamically
> loaded everytime I use an LDAP tool (e.g. ldapsearch).
> I'd like to move away from this, and just have
> Kerberos5 client support statically compiled into
Just out of curiosity - why? Security reasons? Performance? Doesn't
make a lot of sense...
> Has anyone done this, or does anyone know how to?
Try configuring SASL "--with-staticsasl". This is not an OpenLDAP-related
-- Howard Chu
Chief Architect, Symas Corp. Director, Highland Sun
Symas: Premier OpenSource Development and Support