summaryrefslogtreecommitdiffstats
path: root/API.txt
diff options
context:
space:
mode:
authorAlexander Bokovoy <abokovoy@redhat.com>2012-10-18 21:46:35 +0300
committerAlexander Bokovoy <abokovoy@redhat.com>2012-10-31 22:28:53 +0200
commit09a4764112b9aa3e2e26e00f20fa23f42356b9b4 (patch)
tree3a2733f4383c1504468a4e31eb9fb36f49c79172 /API.txt
parent381f7f583ca02835731aeb2ca8be31ee279504ef (diff)
downloadfreeipa-30gatepo.tar.gz
freeipa-30gatepo.tar.xz
freeipa-30gatepo.zip
Resolve external members from trusted domain via Global Catalog30gatepo
A sequence is following: 1. Match external member against existing trusted domain 2. Find trusted domain's domain controller and preferred GC hosts 3. Fetch trusted domain account auth info 4. Set up ccache in /var/run/ipa_memcached/krb5cc_TD<domain> with principal ourdomain$@trusted.domain 5. Do LDAP SASL interactive bind using the ccache 6. Search for the member's SID 7. Decode SID 8. Replace external member name by SID
Diffstat (limited to 'API.txt')
0 files changed, 0 insertions, 0 deletions