[29106] in Kerberos

home help back first fref pref prev next nref lref last post

Re: password expiry for a principal

daemon@ATHENA.MIT.EDU (Russ Allbery)
Fri Jan 18 22:08:25 2008

To: kerberos@mit.edu
In-Reply-To: <Pine.GSO.4.61.0801182158550.11156@supergrover.coyhile.com> (Coy
	Hile's message of "Fri\, 18 Jan 2008 22\:01\:00 -0500 \(EST\)")
From: Russ Allbery <rra@stanford.edu>
Date: Fri, 18 Jan 2008 19:07:31 -0800
Message-ID: <87d4rya4y4.fsf@windlord.stanford.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Coy Hile <coy.hile@coyhile.com> writes:

> Does your pam_krb5 implmentation support this type of setup?  The stock
> one that ships with Solaris does not.

Yup, it should prompt the user to change their password.  It just makes
use of the support inside the Kerberos libraries for doing so, though, so
that may not work when built against the Solaris Kerberos libraries if
they don't include that support.  I don't know; I don't use Solaris's
Kerberos implementation.

-- 
Russ Allbery (rra@stanford.edu)             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post