control: reassign -1 libapache2-mod-auth-kerb
control: found -1  libapache2-mod-auth-kerb/5.4-2.4
control: retitle -1  FTBFS with krb5 1.18: significant use of internal
APIs and data structures
control: affects -1 libkrb5-3

Hi.
Kerberos 5 1.18 significantly refactors the replay cache implementation.
Unfortunately, if you take a look at src/mit-internals.h in the
mod-auth-kerb sources, you'll find that the functioning of mod-auth-kerb
depends on several internal APIs and internal data structures including
the donot_replay structure and the  APIs related to replay cache
resolution.

I appreciate the comments about the bugs in krb5 1.3 that lead to this
situation, but I'll note that krb5 1.3 hasn't been in Debian since 2005.
It's sort of unfortunate that things haven't been fixed on the
libapache2-mod-auth-kerb side in the intervening 15 years:-)


This is definitely going to require changes on the
libapache2-mod-auth-kerb side.

Attachment: signature.asc
Description: PGP signature

Reply via email to