[jboss-user] RE: Kerberos authentication with JBoss on Linux... Anyone?
Dion Rowney
dion_rowney at hotmail.com
Fri May 18 13:17:46 EDT 2007
Is anyone using Kerberos auth out there?
via the login-config.xml file?
>From: "Dion Rowney" <dion_rowney at hotmail.com>
>Reply-To: The JBoss User main mailing list <jboss-user at lists.jboss.org>
>To: jboss-user at lists.jboss.org
>Subject: [jboss-user] Kerberos authentication with JBoss on Linux
>Date: Thu, 17 May 2007 09:13:11 -0600
>
>Hi,
>
>I am setting up CAS and want to authenticate against our Kerberos domain.
>
>I have determined that CAS' authentication mechanism uses the
>login-config.xml policies and arrives at "other".
>
>I have tried the textfile basic auth and it works.
>
>I was hoping to use the built in Sun Kerberos authentication but it can
>seem to find it. Here is my config file and the error I get in the logs.
>Does anyone know how to make this work?
>
>login-config.xml:
>
><application-policy name = "other">
> <authentication>
> <login-module code = "com.sun.security.auth.module.Krb5LoginModule" flag
>= "required">
> <module-option name = "debug">true</module-option>
> <module-option name =
>"principal">HTTP/examplehost.yourdomain.com at YOURWINDOWSDOMAIN.COM</module-option>
> <module-option name = "kdc">adserverhostname</module-option>
> <module-option name = "realm">YOURWINDOWSDOMAIN.COM</module-option>
> <module-option name = "storeKey">true</module-option>
> <module-option name = "useKeyTab">true</module-option>
> <module-option name = "doNotPrompt">true</module-option>
> <module-option name =
>"keyTab">/home/contelligent/contell.host.keytab</module-option>
> </login-module>
> </authentication>
></application-policy>
>
>
>server.log:
>
>2007-05-16 12:17:39,824 ERROR [STDERR]
>javax.security.auth.login.LoginException: unable to find LoginModule class:
>com.sun.security.auth.module.Krb5LoginModule
>
>Thanks.
>
>_________________________________________________________________
>Windows Live Hotmail. Now with better security, storage and features.
>www.newhotmail.ca?icid=WLHMENCA149
>
>_______________________________________________
>jboss-user mailing list
>jboss-user at lists.jboss.org
>https://lists.jboss.org/mailman/listinfo/jboss-user
_________________________________________________________________
Windows Live Hotmail with drag and drop, you can easily move and organize
your mail in one simple step. Get it today!
www.newhotmail.ca?icid=WLHMENCA153
More information about the jboss-user
mailing list