Greg Hudson <ghudson <at> mit.edu> writes:
> At least some versions of pam_krb5 have some mapping options. See the > alt_auth_map and search_k5login options here: In fact, it turns out that SSSD has exactly the behavior for which I was looking. I wrote up my solution here: http://blog.oddbit.com/2015/07/16/mapping-local-users-to-kerberos-principals-with-sssd/ Cheers, -- Lars ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos