[OpenAFS-devel] aklog on OS X does not contact KDC to obtain AFS serivce principal

Marcus Crestani crestani@informatik.uni-tuebingen.de
Thu, 31 Jul 2014 20:24:28 +0200


>>>>>"BK" == Benjamin Kaduk <kaduk@MIT.EDU> writes:
BK> I can't say that I have direct experience with this issue on OS X, but
BK> I will note that on my FreeBSD machines (which also use a Heimdal
BK> variant for krb5, thougha different version than OS X), libkrb5 is
BK> pretty insistent on using DNS queries to lookup which machine(s) are
BK> the KDC for the realm in question.  In the case of my test cell of VMs
BK> on my laptop, there are no DNS entries for the names I have given
BK> them, so operations such as aklog just hang for several seconds and
BK> report failure.

That's problaby not it: We have DNS entries for all affected hosts.  And
aklog does not hang at all, it returns instantly.

-- 
Marcus