Description
Currently, KMS supports multiple KMS instances behind a load balancer or VIP for scalability and HA purposes. A lot of extra configurations and cares must be taken to make them work properly as a single logical service.
Especially when Kerberos authentication is used, special care must be taken on the service principles. (When KMS is used, strong authentication is very important to key security)
It would be ideal to provide a native solution in KMS server and KMS client to support KMS high availability and scalability. This would make the deployment of HA and scalable KMS more straightforward as well as saving the cost of a specific load balancer and maintenance.