[OpenAFS] Kerberos 5, AFS, and no krb524d

Nicholas Henke henken@seas.upenn.edu
05 Jun 2003 15:19:00 -0400


On Thu, 2003-06-05 at 15:12, Derrick J Brashear wrote:
> So if I give you one called krb52kad would you be able to get past it?
> Really, it would help if you forget that it ever did krb4, but you can
> disable that entirely for this application.

I could run that locally to the OpenAFS server no problem ( I have
access to those boxen ).

> 
> > [realms]
> >  UPENN.EDU = {
> >   kdc = kerberos1.upenn.edu:88
> >   kdc = roughneck.liniac.upenn.edu
> >   admin_server = kerberos1.upenn.edu:749
> >   krb524_server = roughneck.liniac.upenn.edu:4444
> >  }
> 
> Ok.
> 
> > I would rather not do this -- and just use the v5 tickets.
> 
> Not ready yet. However, the "rxkad 2b" in recent AFS is a stripped krb5
> ticket, and that's what krb524d would be doing.

Ok -- works for me :) So... I will need krb524 running at some level.  

Nic
-- 
Nicholas Henke
Penguin Herder & Linux Cluster System Programmer
Liniac Project - Univ. of Pennsylvania