[Dovecot] check password on behalf of user

Timo Sirainen tss at iki.fi
Tue Feb 9 20:14:27 EET 2010

On Tue, 2010-02-09 at 21:12 +0300, Nikolay Shopik wrote:
> On 09.02.2010 21:10, Timo Sirainen wrote:
> > On Tue, 2010-02-09 at 20:47 +0300, Nikolay Shopik wrote:
> >> I'm running KDC with all users and passwords, but have to manage clients
> >> who doesn't support GSSAPI like mobile phones. Is it possible to dovecot
> >> SASL check password in KDC when user sends plain text login? I know this
> >> is possible to do with saslauthd from Cyrus but prefer to stick with
> >> dovecot SASL.
> >
> > Not directly, but how about pam_krb5?
> >
> But this won't work if I have virtual users, right?

I guess it depends on if pam_krb5 tries to use NSS. If it doesn't, I
don't see why it couldn't work.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part
Url : http://dovecot.org/pipermail/dovecot/attachments/20100209/fd9d02f2/attachment.bin 

More information about the dovecot mailing list