Skip to content

Commit 5aae047

Browse files
committed
Update krb_server_name to document that a missing entry defaults to
'localhost'. Improve kerberos error message.
1 parent f91370c commit 5aae047

File tree

2 files changed

+8
-9
lines changed

2 files changed

+8
-9
lines changed

doc/src/sgml/config.sgml

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,5 +1,5 @@
11
<!--
2-
$PostgreSQL: pgsql/doc/src/sgml/config.sgml,v 1.27 2005/10/13 20:58:42 momjian Exp $
2+
$PostgreSQL: pgsql/doc/src/sgml/config.sgml,v 1.28 2005/10/13 22:55:19 momjian Exp $
33
-->
44
<chapter Id="runtime-config">
55
<title>Run-time Configuration</title>
@@ -596,9 +596,8 @@ SET ENABLE_SEQSCAN TO OFF;
596596
<varname>krb_srvname</><literal>/</><varname>krb_server_hostname</><literal>@</>REALM.
597597
</para>
598598
<para>
599-
If not set, the default is to allow any service principal matching an entry
600-
in the keytab. See <xref linkend="kerberos-auth"> for details.
601-
This parameter can only be set at server start.
599+
If not set, the default is <literal>localhost</>. See <xref linkend="kerberos-auth">
600+
for details. This parameter can only be set at server start.
602601
</para>
603602
</listitem>
604603
</varlistentry>

src/backend/libpq/auth.c

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@
88
*
99
*
1010
* IDENTIFICATION
11-
* $PostgreSQL: pgsql/src/backend/libpq/auth.c,v 1.128 2005/10/08 19:32:57 tgl Exp $
11+
* $PostgreSQL: pgsql/src/backend/libpq/auth.c,v 1.129 2005/10/13 22:55:19 momjian Exp $
1212
*
1313
*-------------------------------------------------------------------------
1414
*/
@@ -162,11 +162,11 @@ pg_krb5_init(void)
162162
if (retval)
163163
{
164164
ereport(LOG,
165-
(errmsg("Kerberos sname_to_principal(\"%s\") returned error %d",
166-
pg_krb_srvnam, retval)));
165+
(errmsg("Kerberos sname_to_principal(\"%s\", \"%s\") returned error %d",
166+
khostname ? khostname : "localhost", pg_krb_srvnam, retval)));
167167
com_err("postgres", retval,
168-
"while getting server principal for service \"%s\"",
169-
pg_krb_srvnam);
168+
"while getting server principal for server \"%s\" for service \"%s\"",
169+
khostname ? khostname : "localhost", pg_krb_srvnam);
170170
krb5_kt_close(pg_krb5_context, pg_krb5_keytab);
171171
krb5_free_context(pg_krb5_context);
172172
return STATUS_ERROR;

0 commit comments

Comments
 (0)
pFad - Phonifier reborn

Pfad - The Proxy pFad of © 2024 Garber Painting. All rights reserved.

Note: This service is not intended for secure transactions such as banking, social media, email, or purchasing. Use at your own risk. We assume no liability whatsoever for broken pages.


Alternative Proxies:

Alternative Proxy

pFad Proxy

pFad v3 Proxy

pFad v4 Proxy