Re: [Freeipa-devel] [PATCHES] [RFC] New getkeytab operation: why not to use kadmin protocol?

2014-03-06 Thread Petr Spacek
On 5.3.2014 23:18, Simo Sorce wrote: Thanks for reading this far :-) I will bikeshed this thread a little bit: Can we use kadmin protocol instead of the proprietary LDAP control? If I remember correctly one of objections was that we do not allow admin to read the key but it is not true

Re: [Freeipa-devel] [PATCHES] [RFC] New getkeytab operation: why not to use kadmin protocol?

2014-03-06 Thread Petr Spacek
On 5.3.2014 23:18, Simo Sorce wrote: Thanks for reading this far :-) I will bikeshed this thread a little bit: Can we use kadmin protocol instead of the proprietary LDAP control? If I remember correctly one of objections was that we do not allow admin to read the key but it is not true

Re: [Freeipa-devel] [PATCHES] [RFC] New getkeytab operation: why not to use kadmin protocol?

2014-03-06 Thread Simo Sorce
On Thu, 2014-03-06 at 09:50 +0100, Petr Spacek wrote: On 5.3.2014 23:18, Simo Sorce wrote: Thanks for reading this far :-) I will bikeshed this thread a little bit: Can we use kadmin protocol instead of the proprietary LDAP control? You know, you already made the same question last year