[1992] in Kerberos_V5_Development
Re: krb5-libs/207: KDB keytab type multiply defined and wrong
daemon@ATHENA.MIT.EDU (Christopher Provenzano)
Wed Nov 20 22:22:50 1996
Reply-To: proven@cygnus.com
To: Mark Eichin <eichin@MIT.EDU>
Cc: krb5-bugs@MIT.EDU, krbdev@MIT.EDU
In-Reply-To: Your message of "20 Nov 1996 18:48:19 EST."
<xe1n2wcqqf0.fsf@maneki-neko.cygnus.com>
Date: Wed, 20 Nov 1996 22:19:16 -0500
From: Christopher Provenzano <proven@proven.org>
>
> > You could have the keytab resolve routine read the stash file getting the
> > master key, then open the database and attach all of the db_context info
> > to a keytab.
>
> Which reminds me -- I filed an MIT pr on this, I think, but it should
> probably be discussed -- any good reason that the stash file isn't
> just a normal keytab? (stash files have a number of evil properties,
> such as host-dependence...)
>
Having it as a keytab is better if the key is actually stored in the
database. I don't see why we are bothering to store it in the database
though.
CAP