[29319] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Why krb5kdc and kadmind sets up ports for listening differently ?

daemon@ATHENA.MIT.EDU (Vipin Rathor)
Wed Feb 20 04:29:51 2008

Message-ID: <33ab2aef0802200128u49a7af6aw154d49fae7a4b4b1@mail.gmail.com>
Date: Wed, 20 Feb 2008 14:58:48 +0530
From: "Vipin Rathor" <v.rathor@gmail.com>
To: "Ken Raeburn" <raeburn@mit.edu>
In-Reply-To: <2DB984B8-3A2B-4E6D-B22E-AAFCAF7BB4CB@mit.edu>
MIME-Version: 1.0
Content-Disposition: inline
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On 2/19/08, Ken Raeburn <raeburn@mit.edu> wrote:
> The UDP service offered by the KDC needs to respond from the same IP
> address that the client used to reach it.  That's not possible with a
> wildcard-address listener unless your system has support for
> IP_PKTINFO or IPV6_PKTINFO, which is now supported in our code as
> well.  The TCP listener does use a wildcard address.
>
Does that mean, if wildcard is used over UDP for KDC, then on a
multi-IP machine, same IP will not be returned to the client?
Whereas TCP with wildcard, takes care of returning same IP, due to
it's reliability feature?

-- 
-Rathor
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post