control: reassign -1 libapache2-mod-auth-kerb control: found -1 libapache2-mod-auth-kerb/5.4-2.4 control: retitle -1 FTBFS with krb5 1.18: significant use of internal APIs and data structures control: affects -1 libkrb5-3
Hi. Kerberos 5 1.18 significantly refactors the replay cache implementation. Unfortunately, if you take a look at src/mit-internals.h in the mod-auth-kerb sources, you'll find that the functioning of mod-auth-kerb depends on several internal APIs and internal data structures including the donot_replay structure and the APIs related to replay cache resolution. I appreciate the comments about the bugs in krb5 1.3 that lead to this situation, but I'll note that krb5 1.3 hasn't been in Debian since 2005. It's sort of unfortunate that things haven't been fixed on the libapache2-mod-auth-kerb side in the intervening 15 years:-) This is definitely going to require changes on the libapache2-mod-auth-kerb side.
signature.asc
Description: PGP signature