On Wed, May 13, 2020 at 3:49 PM Grant Taylor via bind-users <
bind-users@lists.isc.org> wrote:

> On 5/13/20 6:29 AM, Bob Harold wrote:
> > Your ACL looks right.  I think Ben has the key - Windows uses GSS-TSIG,
> > not regular TSIG.  Not sure how or if that can be solved.
>
> I would bet someone a coffee and doughnut that it can.
>
> Check out Jan-Piet Mens' article:
>
> Link - RFC 2136 Dynamic DNS Updates using GSS-TSIG and Kerberos
>   -
>
> https://jpmens.net/2012/06/29/dynamic-dns-updates-using-gss-tsig-and-kerberos/
>
>
>
> --
> Grant. . . .
> unix || die
>

Thanks for the link.  Lots of pieces to get working there.  Not nearly as
simple as TSIG.  But good if you are already using Kerberos.

-- 
Bob Harold
_______________________________________________
Please visit https://lists.isc.org/mailman/listinfo/bind-users to unsubscribe 
from this list

bind-users mailing list
bind-users@lists.isc.org
https://lists.isc.org/mailman/listinfo/bind-users

Reply via email to