On Tue, 2017-01-31 at 13:37 +0100, Jakub Hrozek wrote:
I'm not really well-versed with winbind, so honestly I'm not sure what
limitation it has wrt Kerberos ccaches. Was this ever reported as a
bug against winbind?
https://bugzilla.redhat.com/show_bug.cgi?id=985107 covers an older
variant of the same problem (DIR:), I think.
See
also https://bugzilla.samba.org/show_bug.cgi?id=10132
But please see my other reply to the thread, there is nothing
inherently
SSSD-specific about this change and nothing that would require you to
use the rest of SSSD.
Indeed. This is about changing the defaults for where Kerberos looks
for the tickets, to somewhere that winbind can't put them.