slapd(8) itself does not manage Kerberos tickets. This is managed by the GSSAPI mechanism code in Cyrus SASL. Kurt At 01:25 PM 11/30/2005, Alex Moore wrote: >Does slapd or sasl build the kerberos5 service principle? > >On Solaris, I am getting a service principal without the fully >qualified domain name. Like ldap/hostname@MY.REALM, instead of >ldap/hostname.openldap.org@MY.REALM > >Alex > >--