summaryrefslogtreecommitdiffstats
path: root/install/migration
diff options
context:
space:
mode:
authorAlexander Bokovoy <abokovoy@redhat.com>2012-08-20 13:26:20 +0300
committerAlexander Bokovoy <abokovoy@redhat.com>2012-08-22 17:20:56 +0300
commit14c48ba6fbb27a9d116da20f59be1cf5887b9b9e (patch)
tree247d017437db30010ef54c0c9c5dea6a96fceb93 /install/migration
parente8d4cc65f8db57709e944400b9dac80c692fd950 (diff)
downloadfreeipa-14c48ba6fbb27a9d116da20f59be1cf5887b9b9e.tar.gz
freeipa-14c48ba6fbb27a9d116da20f59be1cf5887b9b9e.tar.xz
freeipa-14c48ba6fbb27a9d116da20f59be1cf5887b9b9e.zip
Recover from invalid cached kerberos credentials in ipasam
When developing and testing in the same environment, multiple re-installs may be needed. This means previously issued and cached Kerberos credentials will become invalid upon new install. ipasam passdb module for Samba uses Kerberos authentication when talking to IPA LDAP server. Obtained Kerberos credentials are cached during their lifetime. However, the ccache is not removed automatically and if IPA setup is made again, cached credentials are used, only to discover that they are invalid. With this change invalid correctly obtained cached credentials are recognized and, if LDAP SASL bind fails, new credentials are requested from the KDC. https://fedorahosted.org/freeipa/ticket/3009
Diffstat (limited to 'install/migration')
0 files changed, 0 insertions, 0 deletions