Kerberized LDAP supported?

Status
Not open for further replies.

peridian

Dabbler
Joined
Feb 2, 2015
Messages
13
Hi,

I do not have Active Directory, but I do have a Kerberised OpenLDAP installation.

I can see that freeNAS can support openLDAP for its directory lookup, but can it do so with a Kerberized install?

Regards,
Rob.
 
D

dlavigne

Guest
Yes, in 9.3 you can configure both the realm and select the imported keytab in Directory -> LDAP.
 

Dave Genton

Contributor
Joined
Feb 27, 2014
Messages
133
Hi,

I do not have Active Directory, but I do have a Kerberised OpenLDAP installation.

I can see that freeNAS can support openLDAP for its directory lookup, but can it do so with a Kerberized install?

Regards,
Rob.
Hey Rob would you happen to have a write up or link to one for step by step implementation ?? I want to tie into Open Directory of my OS X Server onsite with FreeNAS but not having greatest of luck, I assume around kerberos and getting proper certificate from OS X Server onto FreeNAS in order to authenticate the directory admin account and start the directory services "service" on Freenas. Any help would be greatly appreciated.

Dave
 

Dave Genton

Contributor
Joined
Feb 27, 2014
Messages
133
Yes, in 9.3 you can configure both the realm and select the imported keytab in Directory -> LDAP.

Is it possible to get assistance with finishing an LDAP integration with FreeNAS into Open Directory ? I have FreeNAS connected and enabled but like many others the only way to get that done was by not selecting a certificate, no SSL/TLS and use the auxiliary parameter ldap_tls_reqcert = never. Like this I have no problem getting it to connect. For the past 12 hours straight I have tried every iteration I can find with my certificates and keytabs/service principal and only get "failed to restart service". Admittedly I am new to certificate signing and keytab/principal service creation etc but with nearly 25 years in the data center engineering realm I can usually figures new things out pretty quickly, aside from freenas binding to any ldap server I have where certificates and kerberos is involved which I require for SSO. Most documentation favors windows, but then what linux/BSD I find doesn't work for OS X side. Any direction would be greatly appreciated.

Dave
 
Status
Not open for further replies.
Top