[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kerberos
Subject:    Re: MIT kinit with AD userPrincipalName with SMTP domain and not
From:       Luke Howard <lukeh () padl ! com>
Date:       2009-11-22 11:53:30
Message-ID: 3C7D7603-6782-46D8-AD42-11EA6E25468A () padl ! com
[Download RAW message or body]

Hi Mike,

> I understand now. Unfortunately, in practice, I need much more than
> kinit. I'm integrated with an old version of Heidmal so it seems I'll
> need to work on moving to a newer Heimdal and possibly work on
> krb5/principal.c:build_principal et al if the latest Heimdal doesn't
> already have it. I also want to do this with Java but given the
> spotted history of Java's builtin Kerberos implementation I don't
> expect that to be tackled easily. I kinda wish I just had a really
> solid ASN.1 compiler and crypto lib for the various languages. Ho-hum.

Ah, I assumed you were using MIT.

For those that are, there is AS referral support in 1.7, but from  
memory there are some bugs (which really should be fixed in a patch  
release). I don't have the details on hand. It definitely works in  
trunk and thus 1.8.

-- Luke
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic