Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

For the IPA provider, always set the local hostname in the locator file when only one server is listed #2443

Closed
sssd-bot opened this issue May 2, 2020 · 0 comments

Comments

@sssd-bot
Copy link

sssd-bot commented May 2, 2020

Cloned from Pagure issue: https://pagure.io/SSSD/sssd/issue/1401

  • Created at 2012-07-03 15:45:31 by simo
  • Closed as Duplicate
  • Assigned to nobody

On IPA servers we need to turn on by default dns_lookup_kdc to true
The reason is that we need to allow IPA servers to properly resolve trusted domains via DNS.

However we do not want to really do DNS resolution for our own realm.
If the ipa_server option point to a single server we should dump in the locator plugin file the first name as soon as the ipa backend is initialized, even before any lookup is done.

This will allow libkrb5 to never perform DNS lookups by default but refer only to the local server.

Comments


Comment from dpal at 2012-07-05 15:30:33

This is a dup of a part of the #941. We are closing this ticket and pulling in #941.


Comment from dpal at 2012-07-05 15:30:44

Fields changed

resolution: => duplicate
status: new => closed


Comment from simo at 2017-02-24 14:34:06

Metadata Update from @Simo:

  • Issue set to the milestone: NEEDS_TRIAGE
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant