#6337 [RFE] Create URI records for KDC for client auto discovery of KDC proxy
Opened 7 years ago by dpal. Modified 2 years ago

KDC proxy is a web server. Kerberos clients need to know where this server is if the client is outside the firewall. Clients know where the normal KDC is using SRV records. A new RFC was created to allow Kerberos client also to look at URI DNS records to determine where KDC proxy is.

This ticket requests automatic creation of the URI records in IdM DNS in the same way as we create Kerberos SRV records for each IdM server.


Metadata Update from @dpal:
- Issue assigned to someone
- Issue set to the milestone: FreeIPA 4.5 backlog

7 years ago

Metadata Update from @mbasti:
- Issue assigned to mbasti (was: someone)

6 years ago

Metadata Update from @mbasti:
- Issue close_status updated to: None
- Issue priority set to: blocker (was: major)
- Issue set to the milestone: FreeIPA 4.5.1 (was: FreeIPA 4.5 backlog)

6 years ago

Postponing to 4.7. Enabling these records breaks client installation and might cause potential other issues we don't know about. @mbasti, please file a bug.

https://www.redhat.com/archives/freeipa-devel/2017-April/msg00641.html

Metadata Update from @pvoborni:
- Issue priority set to: critical (was: blocker)
- Issue set to the milestone: FreeIPA 4.7 (was: FreeIPA 4.5.1)

6 years ago

Metadata Update from @mbasti:
- Assignee reset

6 years ago

Relevant: https://pagure.io/freeipa/issue/5052 (perform client configuration on the basis of the new URI discovery Internet Draft)

Metadata Update from @pvoborni:
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1485874 (was: todo)

6 years ago

Metadata Update from @pvoborni:
- Custom field rhbz adjusted to https://bugzilla.redhat.com/show_bug.cgi?id=1485874 (was: todo)

6 years ago

Metadata Update from @rcritten:
- Issue set to the milestone: FreeIPA 4.7.1 (was: FreeIPA 4.7)

5 years ago

FreeIPA 4.7 has been released, moving to FreeIPA 4.7.1 milestone

It sure looks that way to me.

Metadata Update from @rcritten:
- Issue set to the milestone: None (was: FreeIPA 4.7.1)

2 years ago

Login to comment on this ticket.

Metadata