MIT Kerberos v5 and OpenLDAP

Hi all,

Im currently implementing a system with MIT Kerberos V5, SASL, OpenSSL and off-course OpenLDAP.

My big question is: to use MIT Kerberos V5 as an authentication mechanism, all user passwords must be stored in the KDC database. What can be done if I need to get a user password via LDAP?

Im also looking for the schema: krb5-kdc.schema where can this be found?

Best Regards,

Jorge Ruão