Re: interoperability Win2k/Linux

2002-06-06 Thread Sam Hartman
Alternatively, if you map accounts locally on all your servers and do not depend on domain logins or domain group memberships you can avoid the need for an AD server. Kerberos mailing list [EMAIL PROTECTED] http://mailman.mit.edu/mailman/

Re: use of authorization-data

2002-06-06 Thread Sam Hartman
> "Frank" == Frank Balluffi <[EMAIL PROTECTED]> writes: Frank> I see that it is possible to put application-defined data Frank> in the enc-authorization-data field of a request to a TGS Frank> and the authorization-data field of a ticket. Suppose I Frank> have a password-based

Re: gss_acquire_cred quaestion...

2002-06-06 Thread Sam Hartman
> "Gurlal" == Gurlal Brar <[EMAIL PROTECTED]> writes: Gurlal> Hi, I am trying to call gssapi function gss_acquire_cred , Gurlal> but i could not pass Service Principle's password direct Gurlal> in this function. Is it must to generate keytab file for Gurlal> every principal t

Free Resume Viewing, Benefits Job Seekers - Data Storage Job Board

2002-06-06 Thread jobstor.com
Title: Untitled Document       Friday June 14th, jobstor.com will be granting 1-day of free access to view all activated resumes to (registered) data storage Employers/Recruiters   Attention Job Seekers: There are currently 100+ data storage employers registered to ta

Re: interoperability Win2k/Linux

2002-06-06 Thread Booker C. Bense
On 6 Jun 2002, francis wrote: > Hi, > > MIT advice to make a bi-directional cross realm trust. > But, i want to know if these follow scenarios are possible and > what are the interoperabilities problems: > > win2k client --> MIT kdc --> win2k service - Only if the w2k service doesn't use embedde

RE: How to add /etc/krb5.keytab

2002-06-06 Thread Gonyou, Austin
Must be root to add to the keytab. in kadmin: kadmin> ank -randkey ftp/hostname.fq.dn@REALM kadmin> ktadd -k /etc/krb5.keytab ftp/hostname.fq.dn@REALM kadmin> exit #kinit -ke You should see the key you just added. -Original Message- From: [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: 6

Re: How to add /etc/krb5.keytab

2002-06-06 Thread Harry Rüter
Hi, think i saw you on the LDAP-list too ? Use Turbo Fredriksons LDAPv3-guide as a start .. http://www.bayour.com/LDAPv3-HOWTO.html greets Harry Fozia Zaidi wrote: > > I'm a Kerberos Newbie and have been attempting to install and > configure MIT Kerberos V. I followed the MIT Kerb documentati

How to add /etc/krb5.keytab

2002-06-06 Thread Fozia Zaidi
I'm a Kerberos Newbie and have been attempting to install and configure MIT Kerberos V. I followed the MIT Kerb documentation for installation, and Administrator and am also referencing the Kerberos FAQ at http://www.nrl.navy.mil/CCS/people/kenh/kerberos-faq.html I have a kerberos server daemon r

use of authorization-data

2002-06-06 Thread Frank Balluffi
I see that it is possible to put application-defined data in the enc-authorization-data field of a request to a TGS and the authorization-data field of a ticket. Suppose I have a password-based application service that would be difficult to Kerberize, I have two questions: 1. In theory, is it

gss_acquire_cred quaestion...

2002-06-06 Thread Gurlal Brar
Hi, I am trying to call gssapi function gss_acquire_cred , but i could not pass Service Principle's password direct in this function. Is it must to generate keytab file for every principal that we want to use in this function If anybody can tell me this,than it would be great help.

interoperability Win2k/Linux

2002-06-06 Thread francis
Hi, MIT advice to make a bi-directional cross realm trust. But, i want to know if these follow scenarios are possible and what are the interoperabilities problems: win2k client --> MIT kdc --> win2k service win2k client --> MIT kdc --> linux service Linux client --> MIT kdc --> win2k service