Mark Phalan Mark.Phalan at Sun.COM
Thu Mar 20 06:53:16 EDT 2008

It might be nice to remove the necessity to configure a keytab for
kadmind (kadm5.keytab). The key data that kadmind needs could be taken
directly from the kerberos db. Doing it that way would simplify
administration/setup and remove a whole class of potential configuration
problems (kadm5.keytab missing principals, containing old principals,
wrong path to kadm5.keytab specified etc.)

Before I take a look at actually implementing it it was suggested to me
that it would be wise to check with the list that this is actually
feasible and makes sense. Is it? Does it?


More information about the krbdev mailing list