MIT Kerberos Dev, The kadmin client connects to MIT Kerberos kadmin server using password-based or keytab authentication. Although it supports anonymous PKINIT, it would be good if kadmin client can also accept X.509 PKINIT certificate based authentication just like how kinit does. Thank you. -Vineeth