[28735] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Enabling preauthentication on linux kdc

daemon@ATHENA.MIT.EDU (Gouri Sankar singaraju)
Wed Nov 14 14:56:30 2007

Message-ID: <28a7eb130711140621j99b00bfh781af6d85d3882a@mail.gmail.com>
Date: Wed, 14 Nov 2007 19:51:17 +0530
From: "Gouri Sankar singaraju" <sgouris@gmail.com>
To: "John Hascall" <john@iastate.edu>
In-Reply-To: <7328.1195045799@malison.ait.iastate.edu>
MIME-Version: 1.0
Content-Disposition: inline
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Mr. Hascall,

I could get linux kdc to pre-authenticate after following your suggestions.
Thanks a million.

Regards
S.Gourisankar

On Nov 14, 2007 6:39 PM, John Hascall <john@iastate.edu> wrote:
>
>
> > Hi,
> >
> > I have a question regarding enabling kerberos pre-authentication on
>
> > [realms]
> > NEVISTEST.COM = {
> > require-preauth = yes
> > default_principal_flags = +preauth
>
> I've never heard of 'require-preauth = yes' as a config file option.
> Setting 'default_principal_flags' only effects principals you create
> when it is in effect -- it doesn't touch existing principals -- you
> will need to use the modprinc command of the kadmin program to set
> the requires_preauth flag on any existing principals.
>
> John
>



-- 
--------------
Gourisam
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post