krb5 DAL (database abstraction layer) and related changes

Praveenkumar Sahukar psahukar at novell.com
Mon Jul 11 06:49:07 EDT 2005


> >>>Ken Raeburn <raeburn at MIT.EDU> 07/08/05 2:39 am >>> 
> On Jul 7, 2005, at 16:13, Sam Hartman wrote: 
> >>>>>>"Ken" == Ken Raeburn <raeburn at MIT.EDU> writes: 
> >    Ken> In the current implementation, all the database module 
> >    Ken> configuration information is looked up in the main
krb5.conf, 
> >    Ken> not in the KDC's own config file kdc.conf.  I'll see if I
can 
> >    Ken> fix this; it may require some interface changes. 
> > 
> >Let's check this against the design docs.  Long term we've been 
> >wanting to move to the heimdal model where krb5.conf and kdc.conf are

> >both profiles just kdc.oconf is only read by the kdc.  I don't 
> >remember whether we committed to that in the design document. 
>  
> The design doc I have in email from October specifically says
kdc.conf. 
>  I'm also poking through some of the email from March, but this
doesn't 
> seem to have been questioned at all. 
 
>From the earlier discussion between MIT and Novell, it was learnt that
the long term plan was to deprecate the kdc.conf and just have the
krb5.conf. Keeping this in mind the DAL is implemented to use only the
krb5.conf. However, the DAL design document points to kdc.conf and may
not up to date.

What is current decision on this at present ?

Thanks and Regards,
Praveen Kumar


More information about the krbdev mailing list