[Freeipa-devel] Kerberos over HTTPS (KDC proxy)

Christian Heimes cheimes at redhat.com
Thu May 28 13:35:53 UTC 2015


On 2015-05-28 15:28, Martin Kosek wrote:
> In the end, Alexander had a good point that there will be some needed
> associated configuration changes in DNS, when the KdcProxy is enabled/disabled:
> 
> http://www.redhat.com/archives/freeipa-devel/2015-May/msg00522.html
> 
> In which case, we may want to end up with more complicated API/CLI
> (ipa-kdcproxy-manage) than just config-mod command. We now mostly settled to
> per replica configuration, postponing powerful API/CLI for later:
> 
> http://www.redhat.com/archives/freeipa-devel/2015-May/msg00535.html

Thanks Martin,

Rob gave me some feedback on IRC, too. I'm going to sum up the decisions
and my plans for ACI/permission in a new thread.

Christian

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 455 bytes
Desc: OpenPGP digital signature
URL: <http://listman.redhat.com/archives/freeipa-devel/attachments/20150528/5de0878e/attachment.sig>


More information about the Freeipa-devel mailing list