[38286] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Kerberos and Apache reverse proxy

daemon@ATHENA.MIT.EDU (Jochen Hein)
Sat Jul 14 10:43:58 2018

From: Jochen Hein <jochen@jochen.org>
To: Dmitri Pal <dpal@redhat.com>
Date: Sat, 14 Jul 2018 12:51:27 +0200
In-Reply-To: <CAOPuEqUjDkr7f151N0=8zhTurv=pCK-X7q6t5wEgQDEPmAeXZw@mail.gmail.com>
	(Dmitri Pal's message of "Fri, 13 Jul 2018 21:24:59 -0400")
Message-ID: <8336wmf5u8.fsf@jochen.org>
MIME-Version: 1.0
Cc: kerberos <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Dmitri Pal <dpal@redhat.com> writes:

> Some hints on how to deal with proxy if you want Kerberos to work can be
> found here.
> https://ssimo.org/blog/id_019.html
> I am not sure whether they are applicable to your situation or not.

Thanks for the hint.

> What you can do is try KDC proxy instead of the reverse proxy.
> https://github.com/latchset/kdcproxy/blob/master/README

That's for getting a kerberos ticket from you KDC via HTTP instead of
port 88.  I guess it wouldn't help here.

Jochen

-- 
This space is intentionally left blank.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post