[19528] in Kerberos_V5_Development
Updating cross-realm keys?
daemon@ATHENA.MIT.EDU (Derek Atkins)
Mon Jan 30 10:32:28 2017
From: Derek Atkins <derek@ihtfp.com>
To: krbdev@mit.edu
Date: Mon, 30 Jan 2017 10:32:02 -0500
Message-ID: <sjmmve8imx9.fsf@securerf.ihtfp.org>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu
Hi,
I'm in the process of upgrading my MIT KDC from an old version to a more
modern version. As part of the upgrade I'd also like to refresh my
master key and all my shared (cross-realm) keys. I found the
documentation at [0] for updating my krbtgt, service, and master keys
(although it doesn't quite talk about how to update the stash file).
However nowhere could I find any documentation for updating a
cross-realm key. Is there such a process?
Thanks,
-derek
[0] https://web.mit.edu/kerberos/krb5-1.12/doc/admin/advanced/retiring-des.html
--
Derek Atkins 617-623-3745
derek@ihtfp.com www.ihtfp.com
Computer and Internet Security Consultant
_______________________________________________
krbdev mailing list krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev