Re: [PATCH v2] GSSAPI encryption support
От | Robbie Harwood |
---|---|
Тема | Re: [PATCH v2] GSSAPI encryption support |
Дата | |
Msg-id | jlgsi6n8rum.fsf@thriss.redhat.com обсуждение исходный текст |
Ответ на | Re: [PATCH v2] GSSAPI encryption support (Michael Paquier <michael.paquier@gmail.com>) |
Ответы |
Re: [PATCH v2] GSSAPI encryption support
|
Список | pgsql-hackers |
Michael Paquier <michael.paquier@gmail.com> writes: > On Wed, Sep 9, 2015 at 4:12 AM, Robbie Harwood wrote: >> Michael Paquier writes: >> As promised, here's a V2 to address your issues with comments. I >> haven't heard back on the issues you found in testing, so no other >> changes are present. > > Well, the issue is still here: login through gssapi fails with your > patch, not with HEAD. This patch is next on my review list by the way > so I'll see what I can do about it soon even if I am in the US for > Postgres Open next week. Still, how did you test it? I am just > creating by myself a KDC, setting up a valid credential with kinit, > and after setting up Postgres for this purpose the protocol > communication just fails. My KDC is setup through freeIPA; I create a service for postgres, acquire a keytab, set it in the config file, and fire up the server. It should go without saying that this is working for me, which is why I asked you for more information so I could try to debug. I wrote a post on this back in June when this was still in development: http://mivehind.net/page/view-page-slug/16/postgres-kerberos
В списке pgsql-hackers по дате отправления: