[OGo-Users] ldap+kerberos authentication

Adam Tauno Williams users@opengroupware.org
Mon, 05 Mar 2007 06:16:50 -0500


> > Which probably means OGo doesn't believe the user is legitimate.
> > 1.) You have logged in at least once and changed the "root" user's
> > password?
> > 2.) Is "cketn@AXG.LOCAL" an account in OGo's database?
> Yes for both.
> > Did you read the bug report regarding this?
> > http://bugzilla.opengroupware.org/bugzilla/show_bug.cgi?id=1121
> Yes. But here is said it would be nice to have, not how it will be.
> > Also this old thread might be valuable
> > http://mail.opengroupware.org/pipermail/users/2006-January/015501.html
> Here is only told, that it is not doing it. No solution is shown.
> I wonder about this document, that brought me to give it a try:
> http://docs.opengroupware.org/Members/mcarpenter/ldap_kerberos_howto/view?searchterm=kerberos

I didn't reference this document because I don't believe it is relevant.
This document simply describes setting up LDAP authentication,  I don't
understand what it has to do with Kerberos.  Perhaps this works if you
enable BASIC auth in the Keberos module,  but that basically defeats
Kerberos (and isn't SSO);  it might be interesting to try however.  Does
the module still support basic auth?

> So it leaves me with the question: Is there anyone out there doing 
> Kerberos Authentication with Apache2 and OGo accepts it?
> Then I would be interested in the config files.