kdb5_ldap_util does not read kdc.conf

Tom Parker tparker at cbnco.com
Wed Sep 22 17:15:37 EDT 2010


  Thanks for the amazingly quick reply.

It likely only affects people doing initial domain setup or 
modification.  Once the kdc is running everything works normally with 
the settings in kdc.conf

It works nicely with the environment variable and I will add this to our 
wiki until the bug is fixed.

Thanks again!

Tom Parker

On 09/22/2010 05:08 PM, Greg Hudson wrote:
> On Wed, 2010-09-22 at 16:59 -0400, Tom Parker wrote:
>> Is this a bug?  Or am I wrong in my assumptions about the two files.
> Without actually trying to duplicate your behavior, just looking at the
> source code, it looks like a bug in the way kdb5_ldap_util initializes
> its krb5 context.  I'm surprised it hasn't come up before.  It should be
> easy to fix.
>
> A workaround is to set
> KRB5_CONFIG=/etc/krb5.conf:/var/lib/kerberos/krb5kdc/kdc.conf while
> running kdb5_ldap_util.
>
>



More information about the Kerberos mailing list