It sounds like the secd you're using only supports single DES. Single
DES has been deprecated for over 10 years now as a cipher, due to its
very short key length. I would highly encourage you to upgrade your
infrastructure to a more secure encryption type.

If you simply must continue using your current infrastructure, you can
set "allow_weak_crypto = true" in the [libdefaults] section of
/etc/krb5.conf, but this is *strongly* disrecommended, and may cease to
work in future versions of krb5.

** Changed in: krb5 (Ubuntu)
       Status: New => Won't Fix

-- 
krb5-utils kinit will not auth against AIX's dce secd
https://bugs.launchpad.net/bugs/526009
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to krb5 in ubuntu.

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs

Reply via email to