>>>>> "Mike" == Mike Frisch <[EMAIL PROTECTED]> writes:
Mike> With the recent changes to the Kerberos Credentials Cache,
Mike> my service on Windows 2000 is now broken. Without being
Mike> able to use impersonation, how do I allow a Windows 2000
Mike> service to perform Kerberos/GSS operations on behalf of
Mike> other users?
You have those users forward or proxy tickets to your service. Since
you're in W2K land, you probably need to use forwarding at the
SSPI/GSSAPI level.
_______________________________________________
Kerberos mailing list
[EMAIL PROTECTED]
http://mailman.mit.edu/mailman/listinfo/kerberos