On Jul 31, 2014, at 5:11, Michael Osipov <1983-01...@gmx.net> wrote:
>
> > Am 2014-07-30 um 15:42 schrieb Wang Weijun:
> >>
> >> On Jul 29, 2014, at 1:01, Michael Osipov <1983-01...@gmx.net> wrote:
> >>
> >>> Moreover, I have access to My Oracle Support if necessary.
> >>
> >> I'll fix this bug
> I understand your problem. Will see what we can do. When you say "Wouldn't it
> be possible to perform the lookup *once* and then issue all KDC request to
> the KDC whis is working?" do you mean the DNS query result could contain KDCs
> which do not work? Is this common?
It can contain inval
>
> Is it possible to specify the kdc for the realm inside krb5.conf? Java only
> use DNS to get kdc when it cannot read one from krb5.conf.
Max, this is what I did but this is not a solution because we have dozens of
realms which in turn have tens of KDCs.
Add those static lists to all Unix ma