On 2010-05-06 11:41, Stefan Sperling wrote: > On Tue, May 04, 2010 at 10:38:00AM -0500, Alec Kloss wrote: > > I'm happy to help try to set up a configuration that will demonstrate > > the issue without patching Cyrus SASL. It'll just require a "real" > > Kerberos realm to do it. > > Is it also possible to use this without any kerberos at all?
I don't think SASL has any other mechanisms that supports cross-realm at all, but I could be wrong about that. Unless you find another mechanism that supports cross-realm, I don't think you'll be able to replicate this without GSSAPI/Kerberos. > I'd like to start with the simplest possible setup (so I have a better > chance of understanding it), and then add more complexity while testing. > > Stefan > -- alec.kl...@oracle.com Oracle Middleware PGP key: http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xEBD1FF14
pgpYbsE65RmOp.pgp
Description: PGP signature