[OpenAFS] OpenAFS+KerberosV permission problem

Richard Wallace rwallace@a--i--m.com
Wed, 28 May 2003 21:57:13 -0700


Derrick J Brashear wrote:

>On Wed, 28 May 2003, Richard Wallace wrote:
>
>
>  
>
>>https://lists.openafs.org/pipermail/openafs-info/2002-March/003872.html
>>and used
>>
>>kadmin.local -e des-cbc-crc:v4
>>
>>to start kadmin and create the key.
>>    
>>
>
>you should be able to list it, but i can't tell you how to invoke
>kadmin.local to do so.
>
>likewise, i don't know if a flag to klist will tell you what enctypes are
>in your ticket cache
>_______________________________________________
>OpenAFS-info mailing list
>OpenAFS-info@openafs.org
>https://lists.openafs.org/mailman/listinfo/openafs-info
>  
>
It's klist -e and the output of it is:

Ticket cache: FILE:/tmp/krb5cc_0
Default principal: rwallace@HABITAT.THEWALLACEPACK.NET

Valid starting     Expires            Service principal
05/28/03 20:09:01  05/29/03 06:09:01  
krbtgt/HABITAT.THEWALLACEPACK.NET@HABITAT.THEWALLACEPACK.NET
    Etype (skey, tkt): Triple DES cbc mode with HMAC/sha1, Triple DES 
cbc mode with HMAC/sha1
05/28/03 20:09:09  05/29/03 06:09:01  
afs/thewallacepack.net@HABITAT.THEWALLACEPACK.NET
    Etype (skey, tkt): DES cbc mode with CRC-32, DES cbc mode with CRC-32


Kerberos 4 ticket cache: /tmp/tkt0

So it's definitely not DES3.