obtaining tickets by TCP

Victor Sudakov vas at mpeks.no-spam-here.tomsk.su
Fri Sep 12 04:59:22 EDT 2008


Ken Raeburn wrote:
> >
> > Is there a way to configure a Kerberos client to use TCP for obtaining
> > tickets, other that explicitly listing all KDC's in krb5.conf with
> > the "tcp" prefix?
> >
> > I want to be able to prefer TCP transport and still retain the
> > possibility of using DNS SRV records to lookup KDCs.

> The setting "udp_preference_limit" (under libdefaults) indicates the  
> minimum outgoing packet size for which the library will try TCP  
> first.  If it doesn't get through with TCP, it will still try UDP;  
> this only controls the order.

Sorry, I did not mention I was talking about Heimdal.

-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
2:5005/49 at fidonet http://vas.tomsk.ru/



More information about the Kerberos mailing list