[OpenAFS] Kerberos 5, AFS, and no krb524d
Nicholas Henke
henken@seas.upenn.edu
05 Jun 2003 15:19:00 -0400
On Thu, 2003-06-05 at 15:12, Derrick J Brashear wrote:
> So if I give you one called krb52kad would you be able to get past it?
> Really, it would help if you forget that it ever did krb4, but you can
> disable that entirely for this application.
I could run that locally to the OpenAFS server no problem ( I have
access to those boxen ).
>
> > [realms]
> > UPENN.EDU = {
> > kdc = kerberos1.upenn.edu:88
> > kdc = roughneck.liniac.upenn.edu
> > admin_server = kerberos1.upenn.edu:749
> > krb524_server = roughneck.liniac.upenn.edu:4444
> > }
>
> Ok.
>
> > I would rather not do this -- and just use the v5 tickets.
>
> Not ready yet. However, the "rxkad 2b" in recent AFS is a stripped krb5
> ticket, and that's what krb524d would be doing.
Ok -- works for me :) So... I will need krb524 running at some level.
Nic
--
Nicholas Henke
Penguin Herder & Linux Cluster System Programmer
Liniac Project - Univ. of Pennsylvania