[27487] in Kerberos
Re: KfW 3.1: Re-directed stderr of kinit/klist displays dialog
daemon@ATHENA.MIT.EDU (Will Fiveash)
Thu Feb 22 13:20:23 2007
Date: Thu, 22 Feb 2007 11:50:01 -0600
From: Will Fiveash <William.Fiveash@sun.com>
To: kerberos@mit.edu
Message-ID: <20070222175001.GA10262@sun.com>
Mail-Followup-To: kerberos@mit.edu
Mime-Version: 1.0
Content-Disposition: inline
In-Reply-To: <6.1.2.0.0.20070220231042.01e37338@unccmail.uncc.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
On Tue, Feb 20, 2007 at 11:14:14PM -0500, Rodney M Dyer wrote:
> At 10:24 PM 2/20/2007, Rodney M Dyer wrote:
> >The MIT people simply don't want you to be able to pipe in a password to
> >kinit via "stdin", which is the right security practice (in security
> >circles), however they are rather flippant about it, because they allow it
> >under Unix. If they feel like holding a hard line, then they should nix
> >the 'nix stdin too.
>
> Well it appears that I'm wrong now. Just testing this under Solaris and I
> find that piping a password to kinit no longer works! In the intervening
> years they must have fixed this. I politely retract my statement. :)
Works for me using native kinit on Solaris 10 and up.
--
Will Fiveash
Sun Microsystems Inc.
Austin, TX, USA (TZ=CST6CDT)
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos