[31465] in Kerberos

home help back first fref pref prev next nref lref last post

Multiple Apache websites using Kerberos authentication (through the

daemon@ATHENA.MIT.EDU (Caron, Christian)
Fri Sep 11 12:20:24 2009

X-Barracuda-Envelope-From: Christian.Caron@NRCan-RNCan.gc.ca
Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Fri, 11 Sep 2009 08:56:21 -0400
Message-ID: <98CF07D50CB82044B99BC153F889C91D0DAA853A@S0-OTT-X3.nrn.nrcan.gc.ca>
From: "Caron, Christian" <Christian.Caron@NRCan-RNCan.gc.ca>
To: <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hi list,

We have been successful in having users authenticate through the
Kerberos mechanism on one website. The website has the same name and
uses the same IP as the server itself (this is the name that was used to
create the Service Principal account).

When trying to use the same mechanism for a second website (different
name, different IP, same physical server), it doesn't work.

Is it possible to have only one Service Principal account and "attach"
multiple websites to it and how can we achieve that? We would like to
minimize the number of accounts in AD (if possible, only one per
physical server).

Thanks!

-
Christian Caron


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post