"Edgecombe, Jason" <jwedg...@uncc.edu> writes:

> Ok, should I set "KerberosAuthentication no" in my sshd config?

It's really your call.  If you're happy with how it works, I don't see a
compelling reason to change.  We don't use it, though; we use PAM.

One thing that you may lose with that (I haven't checked) is proper
handling of expired passwords.

-- 
Russ Allbery (r...@stanford.edu)             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to