[39050] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Debugging why KRB5_KTNAME isn't working

daemon@ATHENA.MIT.EDU (Ken Hornstein via Kerberos)
Thu Jan 27 14:59:04 2022

Message-ID: <202201271955.20RJth3l024507@hedwig.cmf.nrl.navy.mil>
To: "Brian J. Murrell" <brian@interlinx.bc.ca>
cc: kerberos@mit.edu
In-Reply-To: <7ab7fa0b1c9ceda2c1af863a00e5b7966924e30e.camel@interlinx.bc.ca>
MIME-Version: 1.0
Date: Thu, 27 Jan 2022 14:55:43 -0500
From: Ken Hornstein via Kerberos <kerberos@mit.edu>
Reply-To: Ken Hornstein <kenh@cmf.nrl.navy.mil>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

>Yes.  That is the "for-purpose" mechanism that I alluded to earlier
>which is why I posited that if smtpd was clearing the environment it
>was doing so in violation of the specific mechanism that was supposed
>to make this all work.

Oh, hm.  I might be reading the code wrong, but it looks like the
SASL library (which is what eventually calls the Kerberos library) is
initialized _before_ the environment is reset.  So if you're not also
setting those variables in the environment in the "traditional" way then
it might not see them.

(And Jochen's suggestion is also good, I forgot about the SASL config
file).

--Ken
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post