David Snearline <[EMAIL PROTECTED]> writes:
> 1. Have the AFS kaserver use the standard MIT string_to_key() instead
> of having a custom one, so that client software doesn't have to adapt
> to two universes of Kerberos.
The AFS kaserver doesn't know or care about the string-to-key, it's
the client software that determines this.
CMU has made modifications to the client software to allow use of the
MIT string-to-key, we're starting to run them in production. We will,
but have not as yet, make these changes available to Transarc, there
is no telling when or if these changes will make it out to a product.
We're also developing a compatibility admin server, which takes MIT
kpasswd requests and makes changes to the kaserver datbases.