[27239] in Kerberos
Re: SSH with Multiple Interfaces
daemon@ATHENA.MIT.EDU (Edward Murrell)
Thu Jan 18 17:55:43 2007
Message-ID: <45AFFAD3.1090900@dlconsulting.com>
Date: Fri, 19 Jan 2007 11:55:15 +1300
From: Edward Murrell <edward@dlconsulting.com>
MIME-Version: 1.0
To: kerberos@mit.edu
In-Reply-To: <20070118222820.GC28388@binky.Central.Sun.COM>
X-SA-Exim-Mail-From: edward@dlconsulting.com
Reply-To: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
Nicolas Williams wrote:
> Give your server host/f.q.d.n principals and keytab entries for all its
> interfaces' canonical names.
>
Did that. SSH ignores them.
> And get a client that know how to decode the SSH_MSG_KEXGSS_ERROR
> message :)
>
> Nico
>
That's really not an option. In most cases, the client will be bog
standard OpenSSH, and I don't have a snowballs chance in hell of
mandating client changes.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos