Package: krb5
Version: 1.10.1+dfsg-3
Severity: wishlist
User: ubuntu-de...@lists.ubuntu.com
Usertags: origin-ubuntu raring

Dear Maintainer,

This bug report was also filed in Ubuntu and can be found at
http://launchpad.net/bugs/1095757
The description, from nomike, follows:

There is a bug within eglibc [1] and [2] which breaks kerberos authentication
functionality for ssh-servers behind NAT gateways as glibc does a rDNS
cannonicalization of hostnames even if you specify "rdns=false" in krb5.conf.

There is a workaround implemented in MIT krb5 v. 1.10.2. [3].
The current maintenance release is 1.10.3.

As the bug is still not fixed in eglibc, krb5 should be updated to at least
1.10.3 to fix this issue.

[1] https://bugzilla.redhat.com/show_bug.cgi?id=714823
[2] https://bugs.launchpad.net/ubuntu/+source/eglibc/+bug/1057526
[3] http://krbdev.mit.edu/rt/Ticket/Display.html?id=7124

-- System Information:
Debian Release: wheezy/sid
  APT prefers raring-updates
  APT policy: (500, 'raring-updates'), (500, 'raring-security'), (500,
'raring'), (100, 'raring-backports')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.7.0-7-generic (SMP w/1 CPU core)


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to