#1401 For the IPA provider, always set the local hostname in the locator file when only one server is listed
Closed: Duplicate None Opened 9 years ago by simo.

On IPA servers we need to turn on by default dns_lookup_kdc to true
The reason is that we need to allow IPA servers to properly resolve trusted domains via DNS.

However we do not want to really do DNS resolution for our own realm.
If the ipa_server option point to a single server we should dump in the locator plugin file the first name as soon as the ipa backend is initialized, even before any lookup is done.

This will allow libkrb5 to never perform DNS lookups by default but refer only to the local server.


This is a dup of a part of the #941. We are closing this ticket and pulling in #941.

Fields changed

resolution: => duplicate
status: new => closed

Metadata Update from @simo:
- Issue set to the milestone: NEEDS_TRIAGE

4 years ago

SSSD is moving from Pagure to Github. This means that new issues and pull requests
will be accepted only in SSSD's github repository.

This issue has been cloned to Github and is available here:
- https://github.com/SSSD/sssd/issues/2443

If you want to receive further updates on the issue, please navigate to the github issue
and click on subscribe button.

Thank you for understanding. We apologize for all inconvenience.

Login to comment on this ticket.

Metadata