directory-dev mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Marc Boorshtein" <mboorsht...@gmail.com>
Subject [Kerberos Client] Works on Active Directory, question about connection pooling
Date Fri, 25 Apr 2008 04:40:46 GMT
ApacheDSers,

I just wanted to drop you guys a line to let you know that the
kerberos-client code works well with Active Directory (at least for a TGT, I
haven't tried a SGT) with one caveat.  The user principal name in ad has the
domain as lowercase (ie mlb@test.mydomain.com) but in order for the
kerberos-client code to work the domain needs to be upper case (ie
mlb@TEST.MYDOMAIN.COM).  I don't know if this is because of the internal
code or AD.

A question about the internals of the kerberos-client, does it make sense to
pool the connection objects?  does it maintain an open connection or does it
open a new connection for each ticket?

Thanks
Marc

Mime
View raw message