[13085] in athena10

home help back first fref pref prev next nref lref last post

Re: [Debathena] #1384: Disable DNS canonicalization for Kerberos

daemon@ATHENA.MIT.EDU (Debathena Trac)
Sun Dec 28 21:50:12 2014

MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
From: "Debathena Trac" <debathena@mit.edu>
Cc: debathena@mit.edu
To: geofft@mit.edu, andersk@mit.edu, ghudson@mit.edu
Date: Mon, 29 Dec 2014 02:50:03 -0000
Reply-To: 
Message-ID: <057.88e417318f526673dcec94be041b4f4a@mit.edu>
In-Reply-To: <042.c9c2be0400160755d5b10fcd112754e7@mit.edu>
Content-Transfer-Encoding: 8bit

#1384: Disable DNS canonicalization for Kerberos
-----------------------+---------------------------------------
    Reporter:  geofft  |             Owner:
        Type:  defect  |            Status:  new
    Priority:  normal  |         Milestone:  The Distant Future
   Component:  --      |        Resolution:
    Keywords:          |  Fixed in version:
Upstream bug:          |
-----------------------+---------------------------------------

Comment (by andersk):

 Kerberos 1.12 in trusty implements `dns_canonicalize_hostname = false`.

 Having played with it for two minutes, I observe that there isn’t yet a
 keytab for `host/athena.dialup.mit.edu` itself, let alone its aliases.

-- 
Ticket URL: <https://athena10.mit.edu/trac/ticket/1384#comment:4>
Debathena <http://debathena.mit.edu>
MIT Debathena Project


home help back first fref pref prev next nref lref last post