$npx skillfedfor your agent

python-kadmin-rs

Python interface to the Kerberos administration interface (kadm5)

With conditionsPyPI Python ModulesReleased Aug 2026182.3K downloads / moMITPlatform wheel

Decision gist · record as of 2026-08-14

platform wheels — python_kadmin_rs-0.7.4-cp311-cp311-macosx_14_0_arm64.whl · python_kadmin_rs-0.7.4-cp311-cp311-macosx_14_0_x86_64.whl · python_kadmin_rs-0.7.4-cp311-cp311-manylinux_2_28_aarch64.whl
v0.7.4 · released 2026-08-11 · Python <3.16,>=3.11

Yes, if you need to administer Kerberos realms from Python and can tolerate Alpha-stage software. The package is actively maintained, has no known vulnerabilities, supports current Python versions, and offers a clean API for both remote and local operations. Install friction is moderate due to compiled wheels and the system Kerberos dependency, but that is unavoidable for this use case. Not suitable if you require production-grade stability guarantees.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Requires libkadm5 (MIT Kerberos or Heimdal) installed and discoverable at runtime; not thread-safe without using the sync interface.
  • Medium install friction due to compiled wheels; requires Python 3.11–3.15 and a compatible Kerberos library (MIT or Heimdal) at runtime.
  • Actively maintained with recent releases, but early-stage (Alpha status).

License · maintenance · safety

MIT (permissive) — MIT license permits unrestricted use, modification, and distribution with minimal restrictions—suitable for both open-source and commercial projects.

last release 2026-08-11 (3 days) · last repo commit 2026-08-14 · 2 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 182,290 downloads/mo, #10,105 on PyPI

Verify before relying

import kadmin

# Remote operation
kadm = kadmin.KAdmin.with_password(
    kadmin.KAdm5Variant.MitClient,
    "user/admin@EXAMPLE.ORG",
    "password"
)
print(kadm.list_principals("*"))

# Local operation
kadm_local = kadmin.KAdmin.with_local(kadmin.KAdm5Variant.MitClient)
print(kadm_local.list_principals("*"))
  • Whether the sync interface used by Python bindings fully resolves thread-safety concerns for production workloads.
  • Performance characteristics and scalability limits for bulk principal operations.
  • Compatibility matrix between specific MIT Kerberos and Heimdal versions.
  • Whether local operations require administrative privileges or keytab access.
Same gist for agents: .md · .json

What it is and what it does

python-kadmin-rs wraps a Rust library that provides safe bindings to libkadm5, the Kerberos administration library. It lets you manage Kerberos realms—create, modify, and list principals—either remotely (via password authentication) or locally (on the KDC itself). The package supports both MIT Kerberos and Heimdal variants and loads the library at runtime rather than linking statically, so it can adapt to whichever Kerberos implementation is installed.

The Python API sits atop a thread-safe Rust interface, so you can use it in multithreaded applications without manually managing synchronization. It's early-stage (Alpha) but actively maintained, with wheels built for modern Python versions (3.11–3.15) on macOS and Linux. You'll need the underlying Kerberos library installed on your system for it to work.

Use it for

  • Automate user provisioning by creating and managing Kerberos principals from Python scripts or applications.
  • Query and list principals in a Kerberos realm for auditing or inventory purposes.
  • Integrate Kerberos administration into a larger identity management or authentication system.
  • Run administrative tasks locally on a KDC without needing separate kadmin command-line tools.
  • Build a web service or API that exposes Kerberos realm management to other systems.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need to administer Kerberos realms from Python and can tolerate Alpha-stage software.

The package is actively maintained, has no known vulnerabilities, supports current Python versions, and offers a clean API for both remote and local operations. Install friction is moderate due to compiled wheels and the system Kerberos dependency, but that is unavoidable for this use case. Not suitable if you require production-grade stability guarantees.

Install

python-kadmin-rs on PyPI

Before you install

Medium install friction due to compiled wheels; requires Python 3.11–3.15 and a compatible Kerberos library (MIT or Heimdal) at runtime. Actively maintained with recent releases, but early-stage (Alpha status).

Requires libkadm5 (MIT Kerberos or Heimdal) installed and discoverable at runtime; not thread-safe without using the sync interface.

License in practice

MIT license permits unrestricted use, modification, and distribution with minimal restrictions—suitable for both open-source and commercial projects.

Quickstart

import kadmin

# Remote operation
kadm = kadmin.KAdmin.with_password(
    kadmin.KAdm5Variant.MitClient,
    "user/admin@EXAMPLE.ORG",
    "password"
)
print(kadm.list_principals("*"))

# Local operation
kadm_local = kadmin.KAdmin.with_local(kadmin.KAdm5Variant.MitClient)
print(kadm_local.list_principals("*"))

Verify before relying

  • Whether the sync interface used by Python bindings fully resolves thread-safety concerns for production workloads.
  • Performance characteristics and scalability limits for bulk principal operations.
  • Compatibility matrix between specific MIT Kerberos and Heimdal versions.
  • Whether local operations require administrative privileges or keytab access.

Package facts

LicenseMIT permissive
Python supportSupports the current Python release <3.16,>=3.11
Install frictionMedium. Platform-specific wheel
Runtime dependenciesNone
MaintenanceActively maintained 3 days since the last release
Last repo commit
First released
Downloads182,290 / month, #10,105 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 3 - AlphaIntended Audience :: DevelopersIntended Audience :: System AdministratorsOperating System :: MacOSOperating System :: POSIXProgramming Language :: PythonProgramming Language :: Python :: 3Programming Language :: Python :: 3.11Programming Language :: Python :: 3.12Programming Language :: Python :: 3.13Programming Language :: Python :: 3.14Programming Language :: Python :: 3.15Programming Language :: Python :: Implementation :: CPythonProgramming Language :: RustTopic :: Software Development :: Libraries :: Python ModulesTopic :: System :: Systems Administration :: Authentication/DirectoryTyping :: Typed

Evidence: python_kadmin_rs-0.7.4-cp311-cp311-macosx_14_0_arm64.whl; python_kadmin_rs-0.7.4-cp311-cp311-macosx_14_0_x86_64.whl; python_kadmin_rs-0.7.4-cp311-cp311-manylinux_2_28_aarch64.whl; python_kadmin_rs-0.7.4-cp311-cp311-manylinux_2_28_x86_64.whl; python_kadmin_rs-0.7.4-cp312-cp312-macosx_14_0_arm64.whl; python_kadmin_rs-0.7.4-cp312-cp312-macosx_14_0_x86_64.whl; python_kadmin_rs-0.7.4-cp312-cp312-manylinux_2_28_aarch64.whl; python_kadmin_rs-0.7.4-cp312-cp312-manylinux_2_28_x86_64.whl; python_kadmin_rs-0.7.4-cp313-cp313-macosx_14_0_arm64.whl; python_kadmin_rs-0.7.4-cp313-cp313-macosx_14_0_x86_64.whl; python_kadmin_rs-0.7.4-cp313-cp313-manylinux_2_28_aarch64.whl; python_kadmin_rs-0.7.4-cp313-cp313-manylinux_2_28_x86_64.whl; python_kadmin_rs-0.7.4-cp314-cp314-macosx_14_0_arm64.whl; python_kadmin_rs-0.7.4-cp314-cp314-macosx_14_0_x86_64.whl; python_kadmin_rs-0.7.4-cp314-cp314-manylinux_2_28_aarch64.whl; python_kadmin_rs-0.7.4-cp314-cp314-manylinux_2_28_x86_64.whl; python_kadmin_rs-0.7.4-cp314-cp314t-macosx_14_0_arm64.whl; python_kadmin_rs-0.7.4-cp314-cp314t-macosx_14_0_x86_64.whl; python_kadmin_rs-0.7.4-cp314-cp314t-manylinux_2_28_aarch64.whl; python_kadmin_rs-0.7.4-cp314-cp314t-manylinux_2_28_x86_64.whl

Tags

Capabilities
kerberos administration pythonkadm5 bindingskrb5 realm managementkerberos user provisioningkadmin python interfaceheimdal mit kerberos adminkerberos principal management
Topics
kerberosauthenticationrust-bindings
PyPI keywords
krb5kadminkadm5kerberos

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “kerberos administration python”

  • python-kadmin-rsPython bindings for Kerberos administration (kadm5), enabling remote…
  • pywinrmpywinrm is a Python client for Windows Remote Management (WinRM) that…
  • gssapiPython-GSSAPI wraps the GSSAPI C libraries to provide both low-level…

Give your agent the search over MCP, or paste the wish link into any chat.

More Python Modules packages

idna Worth it
PyPI · Python Modules · released Jun 2026

Converts domain names between Unicode and ASCII-compatible encoding (Punycode) according to IDNA 2008 and Unicode Technical Standard 46, with security validation and broader script coverage than the standard library.

Install it if you work with internationalized domain names, need to validate domains, or use HTTP clients that depend on it transitively.

BSD-3-Clausepure Python · 3.9+
1.8Bdownloads / mo
setuptools Worth it
PyPI · Python Modules · released Aug 2026

Setuptools is a Python build backend and package management tool that handles building, distributing, and installing Python packages, including support for C/C++ extension modules.

MITpure Python · 3.10+
1.6Bdownloads / mo
PyYAML Worth it
PyPI · Python Modules · released Sep 2025

PyYAML parses and emits YAML 1.1 data format, enabling serialization and deserialization of configuration files and Python objects to and from human-readable YAML text.

MITcompiled wheel · 3.8+
1.2Bdownloads / mo
pydantic Worth it
PyPI · Python Modules · released May 2026

Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.

MITpure Python · 3.9+
1.1Bdownloads / mo
annotated-types Worth it
PyPI · Python Modules · released Jul 2026

Provides reusable metadata objects for use with PEP-593 `typing.Annotated` to express common constraints like bounds, collection sizes, and predicates on types.

Install it if you use or build libraries that need to express type constraints in a standardized, inspectable way—or if you want to annotate your own types with…

MITpure Python · 3.10+
871.3Mdownloads / mo
typing-inspection Worth it
PyPI · Python Modules · released Aug 2026

Provides runtime tools to inspect and introspect Python type annotations, enabling programmatic examination of type hints at execution time.

MITpure Python · 3.10+
783.0Mdownloads / mo

See also krb5 · k5test · pykerberos · requests-kerberos · kerberos · winkerberos · minikerberos · requests-credssp · requests-gssapi · gssapi