[243] in Kerberos_V5_Development

home help back first fref pref prev next nref lref last post

Re: additions to klist and kinit

jtkohl@ATHENA.MIT.EDU (jtkohl@ATHENA.MIT.EDU)
Tue Jul 3 15:00:24 1990

From the protocol draft, on what ENC_TKT_IN_SKEY means:

"This option is used only by the ticket-granting service.  The
ENC-TKT-IN-SKEY option indicates that the ticket for the end server is
to be encrypted in the session key from the second ticket-granting
ticket provided."

i.e. this is what the client sends to the server AT THE TIME OF user2user
authentication; there is no reason or use to putting this flag into the
options for an initial (passwd) ticket.

home help back first fref pref prev next nref lref last post