Re: Using a CNAME in the kerberos SRV record

Harald Barth <[email protected]> Wed, 23 Jan 2019 09:27:50 +0100 (CET)
Newsgroups gmane.comp.encryption.kerberos.heimdal.general
Message-ID <[email protected]>
> I strongly recommend against doing so.

I'm 100% with Jeff because imagine that a future upgrade will give you
a resolver (on any OS/client) that will do as the specification says
and not give the answer you expect? In other words: If you control all
the clients and are not afraid to get problems which are hard to
debug, go ahead and use CNAMES ;-)

Harald.