[37186] in Kerberos
Re: Compatibilty between mixed kerberos release (KDC 1.12 client
daemon@ATHENA.MIT.EDU (John Devitofranceschi)
Mon Aug 3 07:19:10 2015
Date: Mon, 03 Aug 2015 07:18:35 -0400
From: John Devitofranceschi <jdvf@optonline.net>
In-reply-to: <CALNT6MX5Zc60_w=_mgaho2Nf+2HjqZFH0n_EQY8Ch-ZkAuh23w@mail.gmail.com>
To: Todd Grayson <tgrayson@cloudera.com>
Message-id: <8F03DFA1-EBEF-4180-A5CD-2DADCC71FA9E@optonline.net>
MIME-version: 1.0
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
> On Jul 29, 2015, at 5:46 PM, Todd Grayson <tgrayson@cloudera.com> wrote:
>
> Hi,
>
> Is there any general wisdom out there about mixed KDC/Client versions? Are
> there concerns around allowing environments drift to where a KDC would be
> on a later release than the clients?
>
There was this one:
http://krbdev.mit.edu/rt/Ticket/Display.html?id=7714
That concerns an issue with older Solaris clients using MIT KDCs >= 1.11
Greg helped me come up with a patch for this that works with 1.13, but the real answer is to patch your old Solaris systems!
jd
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos