Rohit Kumar Mehta <[email protected]> writes:

> Thanks for your help Russ.  My keys are indeed only plain DES keys, but
> I also have allow_weak_crypto set to true.  (We're using Kerberized NFS
> in Linux which I think at this point requires weak crypto)

Is allow_weak_crypto also set on the KDCs involved?

> So I guess I will have to generate new keytabs and recreate the trust,
> and that problem should go away?

You should not need to do any of that if allow_weak_crypto is set.

-- 
Russ Allbery ([email protected])             <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to