[32948] in Kerberos
Re: Admin SRV RR support
daemon@ATHENA.MIT.EDU (Greg Hudson)
Thu Dec 2 19:36:29 2010
From: Greg Hudson <ghudson@mit.edu>
To: Jaap Winius <jwinius@umrk.nl>
In-Reply-To: <1291335970.20307.135.camel@ray>
Date: Thu, 02 Dec 2010 19:36:24 -0500
Message-ID: <1291336584.20307.139.camel@ray>
Mime-Version: 1.0
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
On Thu, 2010-12-02 at 19:26 -0500, Greg Hudson wrote:
> On Wed, 2010-12-01 at 17:56 -0500, Jaap Winius wrote:
> > Does anyone have any idea when MIT Kerberos is likely to include support
> > for the _kerberos-adm._tcp SRV resource record?
>
> > My tests with the packages that currently come with Debian squeeze
> > suggest that this particular DNS functionality is still lacking. Could
> > this be one of the reasons why Heimdal is often used instead?
>
> What tests are you running? We've had support for this for quite some
> time, at least as far back as 1.4.
A little more investigation indicates that we use _kerberos-adm SRV
records for password changes, but not for the kadmin client.
I don't know if this is a particularly strong driver of implementation
choice as you suggest, but I'll make a note to try to implement this for
1.10.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos