RFR 8239385: KerberosTicket client name refers wrongly to sAMAccountName in AD
Weijun Wang
weijun.wang at oracle.com
Wed Apr 1 00:50:44 UTC 2020
> On Apr 1, 2020, at 8:22 AM, Martin Balao <mbalao at redhat.com> wrote:
>
> Hi Max,
>
> Thanks for having a look at the CSR.
>
> On 3/30/20 11:39 PM, Weijun Wang wrote:
>> 1. I don't think there is a need to talk about the java.security.krb5.conf system property, the krb5.conf file name is more popular.
>>
>
> Added a reference to the krb5.conf file in the first place. I wish we
> could keep a reference to the System property for completeness.
OK. I just want to emphasize that we are following MIT krb5 the reference implementation of krb5, but not inventing something new.
--Max
>
>> 2. I'd rather always say "TGS requests" instead of "AP requests".
>>
>
> Changed. This also helped me to fix an AS/AP typo.
>
> I set the target release to JDK-15.
>
> Look forward to the CSR approval.
>
> Thanks,
> Martin.-
>
More information about the security-dev
mailing list