[OpenAFS] OpenAFS+KerberosV permission problem
Richard Wallace
rwallace@a--i--m.com
Wed, 28 May 2003 21:57:13 -0700
Derrick J Brashear wrote:
>On Wed, 28 May 2003, Richard Wallace wrote:
>
>
>
>
>>https://lists.openafs.org/pipermail/openafs-info/2002-March/003872.html
>>and used
>>
>>kadmin.local -e des-cbc-crc:v4
>>
>>to start kadmin and create the key.
>>
>>
>
>you should be able to list it, but i can't tell you how to invoke
>kadmin.local to do so.
>
>likewise, i don't know if a flag to klist will tell you what enctypes are
>in your ticket cache
>_______________________________________________
>OpenAFS-info mailing list
>OpenAFS-info@openafs.org
>https://lists.openafs.org/mailman/listinfo/openafs-info
>
>
It's klist -e and the output of it is:
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: rwallace@HABITAT.THEWALLACEPACK.NET
Valid starting Expires Service principal
05/28/03 20:09:01 05/29/03 06:09:01
krbtgt/HABITAT.THEWALLACEPACK.NET@HABITAT.THEWALLACEPACK.NET
Etype (skey, tkt): Triple DES cbc mode with HMAC/sha1, Triple DES
cbc mode with HMAC/sha1
05/28/03 20:09:09 05/29/03 06:09:01
afs/thewallacepack.net@HABITAT.THEWALLACEPACK.NET
Etype (skey, tkt): DES cbc mode with CRC-32, DES cbc mode with CRC-32
Kerberos 4 ticket cache: /tmp/tkt0
So it's definitely not DES3.