[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Problem with saslregexp BIS


thierryW <thierryw@libertysurf.fr> writes:

> thierryW wrote:
> Oups, i forgot one thing :
> GSSAPI(kerberos 5) use concept of realms so you may have to follow
> your admin guide example :
> uid=(.*),cn=your.realm,cn=GSSAPI,cn=auth   //where realm have to be
> your kerberos 5 realm and may have syntax similar as dc=your,dc=realm

No, sasl is authenticating a gssapi request with
uid=name,cn=gssapi,cn=auth, no kerberos realm is returned. You may see
it when you test sample/server and sample/client.
The OpenLDAP-2.1 Admin Guide is quite clear on this issue.

Dieter Kluenter  | Systemberatung
Tel:040.64861967 | Fax: 040.64891521
mailto: dkluenter@schevolution.com