It seems that is an ongoing topic for years, I've found this discussed from the KRB POV [1] and on openssh [2]. Especially following [1] it seems things aren't too easy but there are a few workarounds/hints that might or might not help your use case.
In general having this configurable instead of hard-coded in ssh sounds right to me, but would then be an upstream feature request that you could report at [3]. If you happen to do so it would be awesome to report the ID back here so that we can link the bugs and track what upstream thinks/says about it.
One thing thou - you write explicitly "to a 20.04 machine" is that behavior in any way a regression to the former versions?
Hi Toby,
It seems that is an ongoing topic for years, I've found this discussed from the KRB POV [1] and on openssh [2]. Especially following [1] it seems things aren't too easy but there are a few workarounds/hints that might or might not help your use case.
In general having this configurable instead of hard-coded in ssh sounds right to me, but would then be an upstream feature request that you could report at [3]. If you happen to do so it would be awesome to report the ID back here so that we can link the bugs and track what upstream thinks/says about it.
One thing thou - you write explicitly "to a 20.04 machine" is that behavior in any way a regression to the former versions?
[1]: http:// kerberos. 996246. n3.nabble. com/KRB5CCNAME- and-sshd- td13395. html /lists. mindrot. org/pipermail/ openssh- unix-dev/ 2014-December/ 033217. html /bugzilla. mindrot. org/show_ bug.cgi
[2]: https:/
[3]: https:/