Hi, In freeipa, we export a keytab for a service. Say we upgrade our freeipa install, and the newer version of MIT kerberos supports a stronger encryption type on the KDC. Does freeipa automatically refresh the keytabs of hosts / services with a new keytab that also contains these stronger encryption types? Does this matter if it does / doesn't happen?
-- Sincerely, William Brown pgp.mit.edu http://pgp.mit.edu:11371/pks/lookup?op=vindex&search=0x3C0AC6DAB2F928A2
Description: OpenPGP digital signature