Bug 571896

Summary: kpasswd does not work if the kdc is setup as a slave server.
Product: [Fedora] Fedora Reporter: Daniel Walsh <dwalsh>
Component: sssdAssignee: Stephen Gallagher <sgallagh>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: medium Docs Contact:
Priority: low    
Version: 13CC: jhrozek, sbose, sgallagh, ssorce
Target Milestone: ---   
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: sssd-1.1.1-3.fc13 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2010-04-28 15:03:33 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:

Description Daniel Walsh 2010-03-09 19:47:03 UTC
Description of problem:

sssd needs to be able to differentiate between the kerberos kdc server from the kerberos admin server.


My kdc is kerberos.boston.redhat.com
admin server is kerberos.corp.redhat.com

Comment 1 Stephen Gallagher 2010-03-09 20:57:49 UTC
I propose the following fix: we add an option krb5_kadmin, which is optional. If it is unspecified, we assume that krb5_kdcip is also a kadmin server, as we have been doing.

Comment 2 Simo Sorce 2010-03-09 21:14:52 UTC
we should really use krb5.conf here imo

Comment 3 Stephen Gallagher 2010-03-10 12:11:00 UTC
Simo, can you please clarify that comment? I don't understand what you're proposing.

Comment 4 Stephen Gallagher 2010-03-10 12:29:01 UTC
This is being tracked upstream in ticket:
https://fedorahosted.org/sssd/ticket/415

Comment 5 Stephen Gallagher 2010-03-15 15:29:26 UTC
This bug has been fixed upstream. A package will be forthcoming in Fedora shortly.

Comment 6 Fedora Admin XMLRPC Client 2010-04-28 14:48:52 UTC
This package has changed ownership in the Fedora Package Database.  Reassigning to the new owner of this component.