[27487] in Kerberos

home help back first fref pref prev next nref lref last post

Re: KfW 3.1: Re-directed stderr of kinit/klist displays dialog

daemon@ATHENA.MIT.EDU (Will Fiveash)
Thu Feb 22 13:20:23 2007

Date: Thu, 22 Feb 2007 11:50:01 -0600
From: Will Fiveash <William.Fiveash@sun.com>
To: kerberos@mit.edu
Message-ID: <20070222175001.GA10262@sun.com>
Mail-Followup-To: kerberos@mit.edu
Mime-Version: 1.0
Content-Disposition: inline
In-Reply-To: <6.1.2.0.0.20070220231042.01e37338@unccmail.uncc.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

On Tue, Feb 20, 2007 at 11:14:14PM -0500, Rodney M Dyer wrote:
> At 10:24 PM 2/20/2007, Rodney M Dyer wrote:
> >The MIT people simply don't want you to be able to pipe in a password to 
> >kinit via "stdin", which is the right security practice (in security 
> >circles), however they are rather flippant about it, because they allow it 
> >under Unix.  If they feel like holding a hard line, then they should nix 
> >the 'nix stdin too.
> 
> Well it appears that I'm wrong now.  Just testing this under Solaris and I 
> find that piping a password to kinit no longer works!  In the intervening 
> years they must have fixed this.  I politely retract my statement.  :)

Works for me using native kinit on Solaris 10 and up.

-- 
Will Fiveash
Sun Microsystems Inc.
Austin, TX, USA (TZ=CST6CDT)
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post