Samba AD with MIT KDC

This page lists tasks which need to be done to bring the MIT KDC support for Samba AP on the same functional level as we have with Heimdal:


  • Implement KDC-canon tests for MIT KDC -> source4/torture/krb5/kdc-canon-heimdal.c
  • Support for S4U2Self
  • Support for S4U2Proxy
  • Add tests for PKINIT support
  • Add auth logging support (WIP branch)
  • Define API for a libkdc in MIT Kerberos
  • RODC support