[17303] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: Proposed Behavior change: don't fail when krb5_sname_to_principal

daemon@ATHENA.MIT.EDU (Greg Hudson)
Fri Oct 14 14:15:08 2011

Message-ID: <4E987C27.5030406@mit.edu>
Date: Fri, 14 Oct 2011 14:15:03 -0400
From: Greg Hudson <ghudson@mit.edu>
MIME-Version: 1.0
To: Sam Hartman <hartmans@mit.edu>
In-Reply-To: <tslbotjekjp.fsf@mit.edu>
Cc: "krbdev@mit.edu" <krbdev@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

I'm not really opposed to this, although one could argue that
host/foo.searchdomain is a better guess than host/foo in the absence of
DNS (when foo contains no dots).  But that assumes we can find out the
search domain (which might be easier than we used to think, but we don't
have a facility for it at the moment) and begs the question of what
happens when there are multiple search domains.
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post