Re: Calling init_sec_context() without config file and default realm
Isaac Boukris <[email protected]> Sun, 26 Dec 2021 03:37:29 +0200
| Newsgroups | gmane.comp.encryption.kerberos.devel |
|---|---|
| Message-ID | <CAC-fF8SaHFjiKho1VcxjZMR7nyfPCXpm0mWxx14fO-j5kjuSNw@mail.gmail.com> |
On Sun, Dec 26, 2021 at 12:07 AM Greg Hudson <[email protected]> wrote: > > On 12/24/21 12:27 PM, Isaac Boukris wrote: > > I'm wondering if this is something we can fix in the library to allow > > working without config-file, or how to get around it, perhaps using a > > different gss name-type for the target would help, need to check, but > > anyway I think it is worth raising. > > If this code path is the only problem, I think we can smooth it out. > krb5_cc_select() didn't initially use krb5_get_fallback_host_realm() > (before commit 234b64bd6139d5b75dadd5abbd5bef5a162e298a), so we should > be able to continue without the realm after a KRB5_CONFIG_NODEFREALM error. See PR #1234, not sure how to formulate it, will cleanup tomorrow if you haven't pushed by then :) _______________________________________________ krbdev mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/krbdev