Behaviour around _kerberos-master._tcp

Tushar Prasad via krbdev <[email protected]> Fri, 10 Mar 2023 02:14:06 +0000
Newsgroups gmane.comp.encryption.kerberos.devel
Message-ID <MN2PR15MB3215BB6D3D60D5FEFFD9FB6FE1BA9@MN2PR15MB3215.namprd15.prod.outlook.com>
HI

Our product makes use of Kerberos client in a proxy.

The product needs to send Kerberos token to the Application.

When that needs to be done, _kerberos-master._tcp  DNS query seems to be sent  at everything a token request is made

Is it as per design? Or there is a caching of master kdc possible(planned) so that _kerberos-master._tcp  can be resolved and DNS and can be cached (for some interval) so that a repetitive query is not sent?


At this point, we are aware of master_kdc entry but looking for options other than making configuration changes in krb5.conf?


Thanks
_______________________________________________
krbdev mailing list             [email protected]
https://mailman.mit.edu/mailman/listinfo/krbdev