Hi Folks,

I have a sticky problem here... I have applied the ANL patches so that my 
AFS kaserver actually stores the users key using the MIT string to key 
function rather than the Andrew string to key.  (thanks Doug for all your 
help)

In testing, I can use a standard kerb 4 'kinit' command and grab 
tickets just like I should be able to.  My standard MIT K4 client program 
seems to work fine.

So now... as my next step, I took one of our test dialup Dec Server 900's 
with NAS Version 1.5, and set its kerberos parameters to point to my 
kaserver.  When I try the authentication, (equivalent of a kinit), it should
work just fine.  (I have had the 900's pointing at a standard MIT KDC and it
works great)

BUT... it does NOT work.  The only thing that I know is that the afs 
kaserver uses a lowercase realm name, so in my wizdom, I have tried both 
cases in the DecServer 900 configuration and it still does not work.

I am totally stumped and only guessing that this is still a realm name 
case problem.  Anyone out there that has done the same with similar 
hardware?

Any ideas? 

--
[EMAIL PROTECTED] Systems 
Programmer UNC-Greensboro

Reply via email to