[Hosting] Re: [Sys] kerberos

Tanner Lovelace hosting@trilug.org
14 Aug 2002 21:32:52 -0400


On Wed, 2002-08-14 at 19:56, H. Wade Minter wrote:
> FWIW, I think you're adding an unneeded level of complexity by going to
> Kerberos.  I've run a couple of corporate systems with encrypted passwords
> going right into LDAP, and it's worked fine.

How did you manage making sure that the password was never sent
in the clear?  Did you always use ldap over ssl/tls?

Thanks,
Tanner
-- 
Tanner Lovelace | lovelace@wayfarer.org | http://wtl.wayfarer.org/
--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--
GPG Fingerprint = A66C 8660 924F 5F8C 71DA  BDD0 CE09 4F8E DE76 39D4
GPG Key can be found at http://wtl.wayfarer.org/lovelace.gpg.asc
--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--*--
 This would be a very good time to hang out with the Open Source 
 people, before they get formally reclassified as a national security 
 threat. -- Bruce Sterling