[krbdev.mit.edu #1349] Initial comments on umich RPC

Sam Hartman via RT rt-comment at krbdev.mit.edu
Thu Aug 21 12:48:28 EDT 2003


>>>>> "kwc at citi" == kwc at citi umich edu via RT <rt-comment at krbdev.mit.edu> writes:

    >> The changes related to using kadmin/fqdn instead of
    >> kadmin/admin are a bit more far-reaching than I had hoped.  I
    >> am also concerned they may create problems for multi-homed
    >> admin servers and may create a support load we don't want to
    >> deal with.  I will revisit that issue on krbdev.

    kwc at citi> I believe the bulk of the changes were in the testcases.
    kwc at citi> Many of those changes were due to the change to use the
    kwc at citi> non-rpc based kpasswd in the tests, not because of the
    kwc at citi> kadmin principal change.


No, I'm actually thinking of:

* an API change to take the principal

* A change to generate the right principal in each client application.

* A dependence on a gethostname/gethostbyname pair in each application.
* A change to generate the kadmin key  for the current hostname in
kdb5_util create.

Will have the rest of the discussion on krbdev.




More information about the krb5-bugs mailing list