Re: kerberos ldap/host.my.domain

--On Wednesday, June 29, 2011 11:56 AM -0500 Dan White <dwhite@olp.net> wrote:

If your GSSAPI mechanism is compiled against heimdal, you should be able
specify an alternate location for your keytab file. Create/edit
/usr/lib/sasl2/slapd.conf (or the location specified by --with-configdir
sasl compile time), and customize the location with:

You shouldn't require a sasl2/slapd.conf at all.  Just do something like:

export KRB5_KTNAME=/etc/ldap.keytab



