On Wed, Jun 26, 2013 at 06:47:00PM +0200, Jakub Hrozek wrote:
The attached patch should fix trouble we had with SRV discovery and
trusts.
We tried to use the GC address even for kinit which gave us errors like:
"Realm not local to KDC while getting initial credentials".
This patch adds a new AD_GC service that is only used for ID lookups,
any sort of Kerberos operations are done against the local servers.
ACK, now even my use case where I do not join the forest root but some
other domain in the forest is working.
bye,
Sumit