Ken Aaker wrote:

> Here's the klist output of my /etc/krb5.keytab
> 
> Keytab name: FILE:/etc/krb5.keytab
> KVNO Principal
> ----
> --------------------------------------------------------------------------
>    3 host/[EMAIL PROTECTED]
>    3 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]
>    2 host/[EMAIL PROTECTED]

Each host should only have its own keys.

The client principal is selected by the user not by the host.
The client principal comes from the user's credential cache.


Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to