Adam Megacz wrote:
> Vesa Kaihlavirta <[EMAIL PROTECTED]> writes:
>   
>> ssh.hcoop.net is the server I should be connecting to, isn't it?
>>     
>
> No, you need to use mire.hcoop.net for passwordless login.
>
> Kerberos has a mechanism which is very similar to the way HTTPS
> verifies that the hostname you're trying to connect to matches the
> server's certificate.  In this case, mire's "certificate" (actually a
> keytab) is for mire.hcoop.net, not ssh.hcoop.net.
>   

That's too bad.  We don't want to ask members to remember which machines 
go with which services, but we also don't want to name a machine "ssh" 
for Kerberos purposes.  Any suggestions on how to handle this?

_______________________________________________
HCoop-Help mailing list
[email protected]
https://lists.hcoop.net/listinfo/hcoop-help

Reply via email to