On 4/29/07, CORUM, M E [AG/1000] <[EMAIL PROTECTED]> wrote:
I have Kerberos working with ApacheDS 1.5.0 nicely and now I need to simulate multiple environments if possible. Is it possible to have a separate domain in a separate partition that has its own separate Kerberos KDC? ...
Nope, no way to do it today. The limitation is almost purely config. As you noted, it's not much more than supporting mappings for a realm to search base DN's. We had this working in experimental OSGi builds where the mapping was stored in the DIT. We have a nearly identical issue with LDAP authentication. DNS has a similar issue. I think we can have a solution for 1.5.1, 1.5.2 at the latest. Enrique
