This document contains information on what options are used by the Cyrus SASL library and bundled mechanisms:
Option | Used By | Description | Default |
---|---|---|---|
auto_transition | SASL Library | When set to 'yes' and when using the sasldb auxprop plugin, automatically transition users to other mechs when they do a successful plaintext authentication | no |
canon_user_plugin | SASL Library | Name of canon_user plugin to use | INTERNAL |
keytab | GSSAPI | Location of keytab file | /etc/krb5.keytab (system dependant) |
mech_list | SASL Library | Whitespace separated list of mechanisms to allow (e.g. 'plain otp'). Used to restrict the mechanisms to a subset of the installed plugins. | all available |
opiekeys | OTP | Location of the opiekeys file | /etc/opiekeys |
plugin_list | SASL Library | Location of Plugin list (Unsupported) | none |
pwcheck_method | SASL Library | Mechanism used to verify passwords, used by sasl_checkpass (possible values: 'auxprop', 'pwcheck', 'saslauthd', 'alwaystrue') | auxprop |
saslauthd_path | SASL Library | Path to saslauthd binary | system dependant |
sasldb_path | sasldb plugin | Path to sasldb file | /etc/sasldb2 (system dependant) |
srvtab | KERBEROS_V4 | Location of the srvtab file | /etc/srvtab (system dependant) |