################################################################################
#
# Apache2 kerberos authentication file.
#
# The kerberos authentication file contains configuration options that allow
# authentication against the KIT.EDU AD DCs. It can be included from within a
# <Directory> but not from a .htaccess file. A common setup would be:
#
#   AuthName		"My private homepage"
#   Include		/etc/apache2/include/auth_kerb
#   Krb5KeyTab		/var/www/<VHost>/conf/http.keytab
#   Require		valid-user

<IfModule mod_auth_kerb.c>
<IfModule mod_authnz_ldap.c>
AuthType		Kerberos
KrbVerifyKDC		On
# Do we need both?
KrbLocalUserMapping	On
#KrbAppendRealm		Off
# Can't use AD for LDAP authorization, too, because groups aren't unrolled :-(
Include			/etc/apache2/include/ldap
</IfModule>
</IfModule>
