In OpenLDAP slapd.conf there were options sasl-host and sasl-realm. Is there anything similar in FedoraDS? My problem is, that on server side, SASL deduces sasl-host improperly: mashine's hostname is bigbox and it runs FDS on directory.example.com. Instead of using sasl-host "directory.example.com" and realm "EXAMPLE.COM", SASL runs gethostname and deduces host and realm from it. In the end, SASL expects for ldap/bigbox.example.com at EXAMPLE.COM credential, instead of correct ldap/directory.example.com at EXANOKE.COM credential which is supplied by client. -- Zaar