Luke Howard wrote:


> Another issue is what to do when a TGT is no longer renewable. At first, we
> thought one might wish to store one's long-term Kerberos key at logon, so it
> would be possible to reacquire a TGT after the renewable lifetime was up. (*)
> 

If using PKINIT or if the ticket cache was from a forwarded ticket, there
is no long term key available on the machine to store, so please don't even
consider this as an option.



> --
> ________________________________________________
> Kerberos mailing list           [email protected]
> https://mailman.mit.edu/mailman/listinfo/kerberos
> 
> 

-- 

  Douglas E. Engert  <[EMAIL PROTECTED]>
  Argonne National Laboratory
  9700 South Cass Avenue
  Argonne, Illinois  60439
  (630) 252-5444
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to