[23874] in Kerberos

home help back first fref pref prev next nref lref last post

krb5_authdata and MS PAC contents

daemon@ATHENA.MIT.EDU (Kallapur, Madhusudan V)
Thu May 12 13:48:37 2005

Content-class: urn:content-classes:message
MIME-Version: 1.0
Date: Thu, 12 May 2005 23:17:47 +0530
Message-ID: <612713304D0B0D4686D61B6EECF4E46B021A8F5C@bgsmsx403>
From: "Kallapur, Madhusudan V" <madhusudan.v.kallapur@intel.com>
To: <Kerberos@mit.edu>
Content-Type: text/plain;
	charset="us-ascii"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

Hi,

 

I am trying to extract the SID's from MS PAC structure present in
authorization data field of the decoded service ticket.

I have read through earlier mail chains where a few have tried to decode
the structure, but haven't found that to help me substantially. My
question is, krb5_authdata structure seems to be still ASN.1 encoded,
with PAC structure itself encoded in NDR (if the structure contains
pointers). Does anyone have any examples what is needed to extract the
SID's ?

 

MS PAC structure specs also didn't help me much.

 

Thanks,

Madhu

 

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post