Skip to content

Conversation

@HAIKUOTIANKONG132
Copy link

Introduce sasl.kerberos.domain.name, mirroring the Java client’s kerberos.domain.name so librdkafka users can target a fixed hostname portion in Kerberos service principals. Document the new property and register it in the config tables.
Update both SASL paths to honor the override:
Cyrus (Linux/macOS): pass the configured hostname to sasl_client_new() when present.
Win32 SSPI: build the SPN as service/override instead of the broker-advertised hostname.
This allows environments that rely on alternative hostnames (e.g., /etc/hosts aliases) to request the same SPN that the Java clients use.

@HAIKUOTIANKONG132 HAIKUOTIANKONG132 requested a review from a team as a code owner November 7, 2025 08:03
@confluent-cla-assistant
Copy link

confluent-cla-assistant bot commented Nov 7, 2025

Please sign the Contributor License Agreement here before this PR can be approved.
❌ HAIKUOTIANKONG132
Please push an empty commit if you would like to re-run the checks to verify CLA status for all contributors.

@HAIKUOTIANKONG132 HAIKUOTIANKONG132 force-pushed the feature/kerberos-domain-override branch from 81d3bef to f403048 Compare November 7, 2025 08:14
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant