obtaining tickets by TCP

Victor Sudakov vas at mpeks.no-spam-here.tomsk.su
Fri Sep 12 13:26:29 EDT 2008

Love H?rnquist ?strand wrote:

> >>> Is there a way to configure a Kerberos client to use TCP for  
> >>> obtaining
> >>> tickets, other that explicitly listing all KDC's in krb5.conf with
> >>> the "tcp" prefix?
> >>>

> Default protocol in Heimdal is udp, there is no way other then you  
> described to override it.

> What problem do you have that require tcp ?

The problem is with a Heimdal client and Microsoft KDC:

$ kinit sudakovva at SIBPTUS.TRANSNEFT.RU
sudakovva at SIBPTUS.TRANSNEFT.RU's Password: 
kinit: krb5_get_init_creds: Response too big for UDP, retry with TCP

Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
2:5005/49 at fidonet http://vas.tomsk.ru/

