Slide 48 of 58
Notes:
We can’t ignore the large population of MS Windows based clients using our services. We would like to make authentication between the MS world and our environment as seamless as possible. The biggest road block to making this happen in the near term is population scaling. Tools like “Samba” allow us to bridge MS Domains with Unix, Kerberos or DCE architectures. We’re looking to see what MS will do with their announced Kerberos integration in NT 5.0.
One drawback to MS Domain authentication is that the account name and password can be requested by a service transparently to the user. This can be a security exposure which allows rogue servers to collect account names and passwords from unsuspecting users.
Http://lake.canberra.edu.au/pub/samba/samba.html