[32948] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Admin SRV RR support

daemon@ATHENA.MIT.EDU (Greg Hudson)
Thu Dec 2 19:36:29 2010

From: Greg Hudson <ghudson@mit.edu>
To: Jaap Winius <jwinius@umrk.nl>
In-Reply-To: <1291335970.20307.135.camel@ray>
Date: Thu, 02 Dec 2010 19:36:24 -0500
Message-ID: <1291336584.20307.139.camel@ray>
Mime-Version: 1.0
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On Thu, 2010-12-02 at 19:26 -0500, Greg Hudson wrote:
> On Wed, 2010-12-01 at 17:56 -0500, Jaap Winius wrote:
> > Does anyone have any idea when MIT Kerberos is likely to include support 
> > for the _kerberos-adm._tcp SRV resource record?
> 
> > My tests with the packages that currently come with Debian squeeze 
> > suggest that this particular DNS functionality is still lacking. Could 
> > this be one of the reasons why Heimdal is often used instead?
> 
> What tests are you running?  We've had support for this for quite some
> time, at least as far back as 1.4.

A little more investigation indicates that we use _kerberos-adm SRV
records for password changes, but not for the kadmin client.

I don't know if this is a particularly strong driver of implementation
choice as you suggest, but I'll make a note to try to implement this for
1.10.


________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post