Unix Technical Forum

Re: Kerberos

This is a discussion on Re: Kerberos within the lucky.openbsd.misc forums, part of the OpenBSD category; --> ---- Original message ---- >Date: Sat, 15 Jul 2006 23:18:53 -0300 >From: "Gustavo Rios" <rios.gustavo@gmail.com> >Subject: Kerberos >To: misc@openbsd.org ...


Go Back   Unix Technical Forum > Unix Operating Systems > OpenBSD > lucky.openbsd.misc

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-18-2008, 05:47 AM
Jacob Yocom-Piatt
 
Posts: n/a
Default Re: Kerberos

---- Original message ----
>Date: Sat, 15 Jul 2006 23:18:53 -0300
>From: "Gustavo Rios" <rios.gustavo@gmail.com>
>Subject: Kerberos
>To: misc@openbsd.org
>
>Well, here i am again.
>
>I was expecting that the granted ticket always hold the address to
>which it is valid. After obtaining a ticket by means of kinit, i got
>the following:
>
>$ kinit
>grios@SSO.NET's Password:
>$ klist -v
>Credentials cache: FILE:/tmp/krb5cc_1000
> Principal: grios@SSO.NET
> Cache version: 4
>
>Server: krbtgt/SSO.NET@SSO.NET
>Ticket etype: des3-cbc-sha1, kvno 1
>Auth time: Jul 15 23:11:42 2006
>End time: Jul 16 03:11:42 2006
>Renew till: Aug 14 23:11:42 2006
>Ticket flags: renewable, initial
>Addresses:
>


just checked this on a local machine and the addresses field is filled out
correctly. the IP also follows the ticket when using a forwardable one (kinit
-f). look at the default krb5.conf that comes with openbsd and add options until
you find which one breaks this.

you may have to fish online for some of the option descriptions since stuff like
correct_des3_mic aren't in the manpage for krb5.conf. is there any plan to
update the manpage with these missing options?

>The address information line is empty. I don't understand why!
>
>Here you have my krb5.conf:
>

<insert giant config file>

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT. The time now is 02:15 AM.


Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0
www.UnixAdminTalk.com