kprop with multiple or NATted IP address

Benjamin Kaduk kaduk at MIT.EDU
Wed Dec 23 16:13:21 EST 2015


On Wed, 23 Dec 2015, Jerry Shipman wrote:

> I think that kpropd is trying to look up the hostname of the master in DNS, and seeing the public IP, instead of the private IP which the connection is coming from, and then aborting because of that mismatch (or something like that).
> On a lark I tried adding the master’s hostname with its private address to /etc/hosts on the slave, but it didn’t immediately seem to help.

Did you try setting rdns = false in the [libdefaults] of the krb5.conf on
both machines?  (You did not specify which version(s) of krb5 were
involved; that features is somewhat new.)

-Ben


More information about the Kerberos mailing list