[libvirt] [PATCH] qemu: don't share kerberos caches between domains

Daniel P. Berrange berrange at redhat.com
Fri Jan 25 09:45:51 UTC 2013


On Thu, Jan 24, 2013 at 07:44:36PM -0500, Cole Robinson wrote:
> On 01/24/2013 07:05 PM, Eric Blake wrote:
> 
> >>
> >> What all this means is that someone should probably reproduce the bug first :)
> > 
> > Unfortunately, I've got a huge learning curve ahead of me if I'm going
> > to reproduce it (I was just implementing what looked like an easy fix
> > based on the bugzilla content).
> > 
> 
> Same reason why I never tested it and submitted the obvious patch :)

Actually you really don't need to know much, if anything, about Kerberos
to get it working. The key is you don't want to try to install and
configure Kerberos. Instead just deploy freeipa, which hides all the
Kerberos nastiness from you. You just install the RPMs, then run
ipa-server-install, it askes you a couple of really simple questions
and then configures kerberos, ldap, certificate manager and more.
Configuring client machines is no harder. It is easy to just setup
FreeIPA inside a VM


Daniel
-- 
|: http://berrange.com      -o-    http://www.flickr.com/photos/dberrange/ :|
|: http://libvirt.org              -o-             http://virt-manager.org :|
|: http://autobuild.org       -o-         http://search.cpan.org/~danberr/ :|
|: http://entangle-photo.org       -o-       http://live.gnome.org/gtk-vnc :|




More information about the libvir-list mailing list