[28875] in Kerberos
Re: New to Kerberos, please help
daemon@ATHENA.MIT.EDU (smelt)
Tue Dec 11 09:00:23 2007
From: smelt <jotones@gmail.com>
Date: Tue, 11 Dec 2007 05:56:06 -0800 (PST)
Message-ID: <d9dbce38-2507-4ab5-88bf-58577509ffb4@j20g2000hsi.googlegroups.com>
Mime-Version: 1.0
X-Complaints-To: groups-abuse@google.com
Complaints-To: groups-abuse@google.com
To: kerberos@mit.edu
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit
Hi,
I will try to answer your questions:
1) I thinks you don't need and AIX KDC. You can ask the tickets from
AIX to an Windows Active Directory. We are using in this way.
2) As far as I know WebSphere is not kerberized. I think that it will
introduce some kind of kerberization in the last versión but I had no
time to know at what level.
Anyway, I assume your WebSphere is running on a AIX box, you will need
the Network Authentication Service (AIX MIT based kerberos
implementation) client in order to ask tickets to AD. Also depending
on the level of kerberization of this last websphere versión you will
need to write code in the application to use de Kerberos API. I have
didn't it so I can't help you with this point.
Thanks,
On 28 nov, 01:17, IDL <isaac...@sierrasystems.com> wrote:
> I have a messaging based application that runs on Websphere and a requirement
> has come up that it be integrated intoKerberos. So now i'm trying to learn
> whatKerberosis all about.
>
> I need to figure out how it can be done and also setup a test environment.
>
> 1) I assume I need to setup a KDC. Can I set one up on windows XP? I
> haven't found how to do that but would like to know if it's possible, or if
> I have to get anAIXbox setup.
>
> 2) In my application the messages can come in either though TCP or RMI
> connections. I am unclear on howKerberoscomes into play, but how would I
> authenticate these messages? Some kind of API call to a Websphere Kerberose
> adapter?
>
> I'm a little overwealmed at the moment, so any info to clue me in would be
> great!
> --
> View this message in context:http://www.nabble.com/New-to-Kerberos%2C-please-help-tf4885441.html#a...
> Sent from theKerberos- General mailing list archive at Nabble.com.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos