One Time Identification, a request for comments/testing.

2007-01-30 Thread g . w
Good evening, I hope this note finds everyone's day going well. Its becoming increasingly obvious that the utility of passwords are becoming problematic. If users are forced into passwords with sufficient entropy they write them down. Products such as PRTK are making it increasingly difficult to

Re: Re.How to configure kerberos with windows 2000 AD

2007-01-30 Thread Christopher D. Clausen
Bharat Thakur <[EMAIL PROTECTED]> wrote: > Dear Sir, > Thanks for your reply. There are three linux server and one windows > 2003 AD(R2) in same network with 180 linux thin clients and 400 > windows clients. KDC installed in first linux server other two are > application server for sun clients. I w

Re: KRB5 1.5 or 1.6 compiled on AIX 5.2/5.3

2007-01-30 Thread Sam Hartman
> "Grant," == Grant, Martin <[EMAIL PROTECTED]> writes: Grant,> I have seen several emails from different people over the Grant,> last few months on trying to get KRB5 1.5 or later to Grant,> compile on AIX 5.x. And no responses that fix the Grant,> problem. I have had the sa

KRB5 1.5 or 1.6 compiled on AIX 5.2/5.3

2007-01-30 Thread Grant, Martin
I have seen several emails from different people over the last few months on trying to get KRB5 1.5 or later to compile on AIX 5.x. And no responses that fix the problem. I have had the same problem and can only presume that Kerberos is no longer supported on AIX. Is this the case? No Kerberos

Re: Re.How to configure kerberos with windows 2000 AD

2007-01-30 Thread Bharat Thakur
Dear Sir, Thanks for your reply. There are three linux server and one windows 2003 AD(R2) in same network with 180 linux thin clients and 400 windows clients. KDC installed in first linux server other two are application server for sun clients. I want to integrate KDC with AD . So that linux client

Re: putty/winscp with gssapi/krb5 ticket forwarding

2007-01-30 Thread Christopher D. Clausen
Lars Schimmer <[EMAIL PROTECTED]> wrote: > Christopher D. Clausen wrote: >> Lars Schimmer <[EMAIL PROTECTED]> wrote: >>> Thanks for the link. >>> Maybe I don4t get it right on my thoughts. >>> Setup here: >>> AD with 1 server and x clients >>> krb5 server on debian on extra machine >> >> So you hav

Re: Solaris 9 latest OEM SSH + pam_krb5.so.1

2007-01-30 Thread Jeffrey Hutzelman
On Friday, January 19, 2007 04:05:40 PM -0500 Jeff Blaine <[EMAIL PROTECTED]> wrote: > Setting this value to false leaves > the system vulnerable to DNS spoofing attacks. This somewhat understates the problem, and IMHO doesn't do a very good job of describing what

Re: kerberos configuration

2007-01-30 Thread Christopher D. Clausen
scotty adams <[EMAIL PROTECTED]> wrote: > Hi Christopher, > > Actually i need the SEAM > Can you also pass me a full KDC configuration? No, I cannot. I suggest that you read the Sun Docs on SEAM: http://docs.sun.com/app/docs/doc/816-5164 And please reply to the list, not to me directly.

Re: No Kerberos environment found

2007-01-30 Thread Christopher D. Clausen
Gayal <[EMAIL PROTECTED]> wrote: > Greetings, > > I installed MIT krb5-kdc, krb5-admin-server, krb5-user using apt-get > install on my Debian Etch box. Use the Debian package libapache2-mod-auth-kerb instead of trying to compile from source.

Re: Compiling krb5-1.6 for Windows

2007-01-30 Thread Danny Mayer
Peger, Daniel Heinrich wrote: > Hi, > >> Yes the build environment for KfW is pretty badly broken at least the >> 3.0 environment which is what I ended up building (using VS 2005). > > Acutally i'm not trying too compile KfW but Kerberos itself. Is this > possible at all on a Windows platform? >

Re: No Kerberos environment found

2007-01-30 Thread Gayal
Hi, Theres no particular reason for me to choose krb5-1.3.1 instead of krb5-1.6. That configure options are given on the INSTALL.txt in the mod_auth_kerb folder. Sorry its my mistake while witting the mail. But i have named it krb5.confin lower case. Also have the [libdefaults] before the defaul

RE: No Kerberos environment found

2007-01-30 Thread Peger, Daniel Heinrich
Hi, is there any reason you choose krb5-1.3.1 instead of krb5-1.6 at least you seem to specify this version in the configure options for the apache module? Considering your config I think it should be named "krb5.conf" in _lower_ case and it should state: [libdefaults] default_realm = GN

No Kerberos environment found

2007-01-30 Thread Gayal
Greetings, I installed MIT krb5-kdc, krb5-admin-server, krb5-user using apt-get install on my Debian Etch box. I need to provide SSO for my WinXP clients to access the corporate Web server which is hosted on Apache2 on the same Debian box using the AD credentials. I was referring to http://www.t