[OpenAFS] Re: klog.krb5 incompatible with Heimdal 1.5.1?

Andrew Deason adeason@sinenomine.net
Thu, 13 Oct 2011 16:08:58 -0500


On Thu, 13 Oct 2011 22:19:21 +0200 (CEST)
Harald Barth <haba@kth.se> wrote:

> > keytype 3 is des-cbc-md5.
> 
> Why does it work then anyway? Shouldn't it be des-cbc-crc for AFS? Or
> does it not matter here? 

We can handle any of those three des enctypes mentioned.

> > klog doesn't specify the enc type (for any code path, as far as I
> > can tell).
> 
> Shouldn't it?

Yes, it's a bug. aklog already does this, but for the tgs; klog doesn't
for either, but heimdal 1.5.1 appears to respond with des for the tgs
request even if we don't specify.

-- 
Andrew Deason
adeason@sinenomine.net