Displaying 1 result from an estimated 1 matches for "bpzvrmdwpacsfwcx".
2014 Jan 20
0
auth_default_realm, pam_krb5, gssapi
...uth): user USER1 authenticated as
USER1 at REALM.COM
The same for GSSAPI auth, if specified authorization name doesn't
contain domain part.
A part of mail.log:
mail dovecot: imap-login: Login: user=<USER1>, method=GSSAPI,
rip=172.16.0.1, lip=192.168.1.1, mpid=5828, TLS,
session=<bpzvRmDwPACsFwCX>
For several reasons I do need username inside dovecot to contain domain
part. So, I found a solution to this problem - modifying /etc/krb5.conf
this way:
[libdefaults]
default_realm = REALM.COM
[realms]
REALM.COM = {
auth_to_local = RULE:[1:$1@$0]
}
This will add realm part to t...