[NTLUG:Discuss] Kerberos and Linux

Leroy Tennison leroy_tennison at prodigy.net
Mon Dec 10 16:04:31 CST 2007


Decided to look at Kerberos as a network-based authentication system to 
replace local authentication as other technologies such as Samba and 
LDAP can.  I'm getting the impression that this is not possible from the 
pam_krb5 man page and lack of references to setting aside local UID/GID 
ranges for use with Kerberos users (which is what Samba and LDAP do).

Am I correct in this assumption?  If not, how is this done?

I should mention that, right now, this is a "learning exercise" rather 
than a determination to use Kerberos.  As a result, all the "why 
Kerberos" and "why not use ..." questions don't really apply, I'm just 
trying to understand the technology and what it can do.



More information about the Discuss mailing list