Sam Hartman <[EMAIL PROTECTED]> writes:
> OK. A lot of this looks like issues finding the right key for a service
> key. It seems like fixing the library code there is a better fix than
> including a domain_realm entry. In particular how much of r19598 would
> help?
It looks like this fixes some of the problems, but it still doesn't fix
the problem for ksu. Running ksu without a domain_realm setting for the
local hostname fails:
wanderer:~> ksu
WARNING: Your password may be exposed if you enter it here and are logged
in remotely using an unsecure (non-encrypted) channel.
Kerberos password for rra/[EMAIL PROTECTED]: :
ksu: Wrong principal in request while verifying ticket for server
Authentication failed.
I'm still trying to figure out why.
--
Russ Allbery ([EMAIL PROTECTED]) <http://www.eyrie.org/~eagle/>
--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]