python-ldap and kerberos

Michael Ströder michael at stroeder.com
Thu Mar 25 20:27:05 CET 2010


Pascal,

it seems you're not described to the python-ldap-dev list so your posting was
delayed in the list maintainer's queue...

Pascal wrote:
> I'm on an M$AD and I'm trying python-ldap from a LINUX host with Python 2.6.4.
> All is ok, I can search_s after a bind_s.
> The problem is the plain text password (wireshark)...
> LDAPs is not not avaible and I can't play with certificats...
> Kerberos is nativelly available on M$AD and is ok on the LINUX host
> (heimdal ~ kinit ok and klist ok)...
> I search (Google) and try for ldap.sasl.gssapi but it is always ko :-(
> Can anybody help me ?

Well, it simply works for me. If klist shows a service ticket everything
should be fine. Most times issues are because of mis-configuration (principal
names, enc-types etc.).

Ciao, Michael.


More information about the python-ldap mailing list