[28633] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Solaris 10 sshd + GSSAPI = where's my cred cache?

daemon@ATHENA.MIT.EDU (Nicolas Williams)
Thu Nov 1 16:33:32 2007

Date: Thu, 1 Nov 2007 15:33:08 -0500
From: Nicolas Williams <Nicolas.Williams@sun.com>
To: Roberto =?iso-8859-1?Q?C=2E_S=E1nchez?= <roberto@connexer.com>
Message-ID: <20071101203308.GQ11498@Sun.COM>
Mail-Followup-To: Roberto =?iso-8859-1?Q?C=2E_S=E1nchez?=
	<roberto@connexer.com>, kerberos@mit.edu
Mime-Version: 1.0
Content-Disposition: inline
In-Reply-To: <20071101200555.GB30563@miami.connexer.com>
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="iso-8859-1"
Errors-To: kerberos-bounces@mit.edu
Content-Transfer-Encoding: 8bit

On Thu, Nov 01, 2007 at 04:05:55PM -0400, Roberto C. Sánchez wrote:
> On Thu, Nov 01, 2007 at 02:34:12PM -0400, Jeff Blaine wrote:
> > Has anyone come across this and found an answer?
> 
> $ grep GSSAPI ~/.ssh/config
> GSSAPIAuthentication yes
> GSSAPIDelegateCredentials yes

You also need to kinit -f or set forwardable = true in the [libdefaults]
section of krb5.conf(4).

Nico
-- 
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos


home help back first fref pref prev next nref lref last post