Chris Hecker <[email protected]> writes:

> Ah.  Is there any way to prevent a service princ from being able to get
> tickets?

> As in, if one of my service keytabs is compromised, can I prevent those
> princs from being used like a normal user princ?

I think you want -allow_tix.

-- 
Russ Allbery ([email protected])              <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to