Hi Dieter:
Yes, I used to use this format ldap/host@REALM while passing it to
gss_import_name() with the type GSS_C_NT_HOSTBASED_SERVICE in my Solaris
8 machine. However once I tried to integrate with MIT kerberos API to get
TGT, I need to use MIT's GSSAPI as well to resolve some library conflict
and MIT's GSSAPI doesn't have GSS_C_NT_HOSTBASED_SERVICE defined so that
I use gss_nt_service_name instead. The consequence of this is that I need
to use this format ldap@realm_name instead.
The odd thing is it all works fine during the authentication phase
without any error returns, it just couldn't return entries while doing
the search, however it still returns normally without any errors.