Greg Hudson <ghudson <at> mit.edu> writes:

> At least some versions of pam_krb5 have some mapping options.  See the
> alt_auth_map and search_k5login options here:

In fact, it turns out that SSSD has exactly the behavior for which I was
looking.  I wrote up my solution here:

 
http://blog.oddbit.com/2015/07/16/mapping-local-users-to-kerberos-principals-with-sssd/

Cheers,

-- Lars


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to