[OpenAFS-devel] Document for authenticating against MIT K5/krb524d ?

Harald Barth haba@pdc.kth.se
Thu, 10 Jan 2002 10:21:44 +0100 (CET)


About startup and keys:

There should be more documentation how to start up from scratch and
the different steps involved and which keys you need where and why
(instead of just creating a bunch of keys and hoping for the best).

If you use Heimdal, the magic word to google for is AFSKEYFILE. That
will get you:

http://www.stacken.kth.se/lists/heimdal-discuss/2000-09/msg00024.html
http://www.stacken.kth.se/lists/arla-drinkers/2000-08/msg00013.html
http://lists-openafs.central.org/pipermail/openafs-info/2001-April/000591.html

The problem is, that we all generate our initial AFS key setup once and
then forget how we did it.

About Heimdal vs MIT:

The Heimdal KDC is both v4 and v5 at the same time, so you won't need
any krb524d. Of course I'm biassed because I don't need to go far to
ask Johan everything about Heimdal. Hm. That does not mean I always
understand the answer :-)

Harald.