[20262] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Big Sur & MIT Kerberos no longer interoperate

daemon@ATHENA.MIT.EDU (Ken Hornstein)
Fri Mar 19 20:02:57 2021

Message-ID: <202103192359.12JNxq2p017773@hedwig.cmf.nrl.navy.mil>
From: Ken Hornstein <kenh@cmf.nrl.navy.mil>
To: krbdev@mit.edu
MIME-Version: 1.0
Date: Fri, 19 Mar 2021 20:02:14 -0400
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: krbdev-bounces@mit.edu

So we have noticed in our testing that SOMETHING has changed on Big Sur,
and MIT Kerberos and the vendor MacOS X Kerberos no longer interoperate.
Specifically, MIT Kerberos and Big Sur Kerberos cannot see each other's
credential caches; a "kinit" with one implementation has credential
caches that are not visible from the other.  I thought maybe that this
was something broken in our version, but a stock MIT Kerberos 1.19.1
behaves the same way.

I haven't yet dug into this, but before I started I was wondering if anyone
else had.

--Ken
_______________________________________________
krbdev mailing list             krbdev@mit.edu
https://mailman.mit.edu/mailman/listinfo/krbdev

home help back first fref pref prev next nref lref last post