kadmind crash because of many kadmin_0 file descriptors

Jonathan Reams jreams at columbia.edu
Fri Jan 18 12:37:43 EST 2013


Earlier this week we had a problem where kadmind exceeded its file
descriptor ulimit with roughly a thousand open file descriptors for
/var/tmp/kadmin_0. Parts of our identity management system maintain a
number of connections to kadmin, and we think there may be something that
is initializing a kadmin session and not explicitly closing it before
disconnecting. While we examine our IDM code, I wanted to see if anyone
else had run into this problem. When does the kadmin credentials cache get
opened and closed?

Jonathan Reams
Columbia University


More information about the Kerberos mailing list