Hi,
When creating xrealm trusts to enable the Windows domain to locate the MIT equivalent you typically run ksetup /addkdc Realm kdc.realm This creates an entry in the registry which is an equivalent to the Krb5.conf file. The Windows Kerberos SSP looks in the registry for the DNS domain name and uses DNS to resolve this to the appropriate IP. Q. Instead of manually specifying the KDC's can Windows use DNS SRV records to locate the MIT KDC as per RFC 2052? Has anyone had success with this? Thanks. ________________________________________________ Kerberos mailing list [email protected] https://mailman.mit.edu/mailman/listinfo/kerberos
