> Hi folks, > > are there any plans to support RFC 5178 [1], 5179 [2]? > > Those domain-based SPNs are very often used in Active Directory, > especially for LDAP > services. I have justed kvno(1) for fake TGS requests for this. It works > to some extent > but NT_PRINCINAL is provided over the wire and not at least SRV-INST with > three components.
Sorry, forgot to add the references: [1] http://www.rfc-editor.org/info/rfc5178 [2] http://www.rfc-editor.org/info/rfc5179 ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos