Skip to main content
  • SPONSOR(S):  Paul Rivers
  • DEPT OR DIVISION: ITS Security and Identity Management
  • PROJECT MANAGER:  Celeste Copeland
  • STATUS: In Progress
  • Project Theme: Improving Process and Operations

What is it?

ITS is currently working on a project to migrate service accounts for applications using the legacy Heimdal Kerberos authentication protocol to Active Directory (AD). Kerberos and AD are both systems that manage user credentials at UNC.

Why are we doing it?

The move is necessary because support for the legacy Kerberos system is fading, and it’s becoming difficult to maintain. By switching to AD, we can ensure a more sustainable and efficient management of user credentials.

How does this impact our UNC community?

This change should be transparent to most faculty, staff and students.
Service account owners, of about 200 applications, will have to make configuration changes and password updates to their accounts to move to AD.

When is this happening?

The project started on 07/01/23 and is expected to be complete by Summer 2024.

Where can I find more information?

Service Account Migration Information