> -----Original Message-----
> Maybe you should remove the non des-cbc ones and couldn't hurt to have a
> des-cbc-crc one as well before generating the KeyFile

I'll give that a shot.


> > and  in krb5.conf,  I do have allow_weak_crypto = true in libdefaults.
> On kdc afs servers and client?
> >

Both .  In this case, the KDC and the (first) OpenAFS dbserver are collocated.

-c
_______________________________________________
OpenAFS-info mailing list
[email protected]
https://lists.openafs.org/mailman/listinfo/openafs-info

Reply via email to