Luke Howard
Luke Howard
Your e600a2b3: remove extraneous braces.
Your 9e2e2437: do Windows KDCs always canonicalise the server name? I thought they stopped doing this after Windows 2000 (except for realm).
If you can address these before submitting PRs, it will be more efficient :)
Support for multiple round-trip pre-authentication mechanisms was added concurrent with #796 but I would hold tight until #805 is merged as it’s further tweaked in that branch.
I haven’t looked at the diff but Windows build is failing owing to lack of ctime_r().
This is one for @nicowilliams
Hi Kartik, good to hear from you. This functionality was part of the original KCM design and implementation, it's possible that it was removed though (and it was limited to...
I am yet to look at the MIT approach. The original intent was for KCM to be a “LSA lite” which maintained a refreshed host credential as long as the...
We already have support for `/var/kerberos/krb5user/%{euid}/client.keytab`, using the `client_keytab` credential store option (which should be consistent with MIT).
@kaduk yes, that I didn't implement (yet).