[243] in Kerberos_V5_Development
Re: additions to klist and kinit
jtkohl@ATHENA.MIT.EDU (jtkohl@ATHENA.MIT.EDU)
Tue Jul 3 15:00:24 1990
From the protocol draft, on what ENC_TKT_IN_SKEY means:
"This option is used only by the ticket-granting service. The
ENC-TKT-IN-SKEY option indicates that the ticket for the end server is
to be encrypted in the session key from the second ticket-granting
ticket provided."
i.e. this is what the client sends to the server AT THE TIME OF user2user
authentication; there is no reason or use to putting this flag into the
options for an initial (passwd) ticket.