Aiko Barz wrote:
Hello,
is it possible to create an Active Directory forest with multible
subdomains and make those informations available for one Linux
machine?
Right now, we have one domain and it is possible to do authentication
against the Active Directory, while using OpenLDAP, PAM and Kerberos.
There's nothing in OpenLDAP that would prevent this. This is a question
more suited to either the pam_ldap or nss_ldap mailing lists. The only
problem is you might have cn=userA representing two different users in
both domains at once, and you'll have to have some kind of policy for
dealing with those situations.