[OpenAFS] PTS lookup via LDAP or apache2

Chris Huebsch chris.huebsch@informatik.tu-chemnitz.de
Mon, 4 Sep 2006 10:18:10 +0200 (CEST)


Hi,

On Mon, 4 Sep 2006, Christopher D. Clausen wrote:

> Hmm.  If I am trying to use mod_auth_kerb (for SSO via SPNEGO) and it
> appends a realm to the user name, is that going to cause issues?

I do not know. What user names are in your PTS-Groups?

> For instance, right now I can login as either cclausen@AD.UIUC.EDU or as
> cclausen@ACM.UIUC.EDU.  Those names are passed through apache to other
> modules.  Is this supported with your module?

My module does not parse the output of pts commands, but it uses the
pr_IsAMemberOf function of afs/ptclient.h

I do not know, how this function handles user names with an appended
realm.

regards


Chris
-- 
  TU Chemnitz, Informatik, VSR  | Chemnitzer Linux-Tage 2007, 3.-4. Maerz
   Str. d. Nationen 62, B204    |     http://chemnitzer.linux-tage.de
        D-09107 Chemnitz        |
+49 371 531-31118, Fax -831118 | http://www.huebsch-gemacht.de -> weblog