[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: kinit and old credentials



On Wed, 19 Mar 2003, Love wrote:

> Andreas Haupt <ahaupt@ifh.de> writes:
>
> > Isn't it possible to let kinit work like the klog from OpenAFS? After
> > looking at the code of it, I still haven't understood why it works - but
> > it works!
> >
> > When doing klog the new credentials are just appended to the (krb4) ticket
> > file.
>
> When you do cross realm, no.
>
> The format of the credential file (and the api, there are stuff the macos
> api that allows it) doesn't permit multiple principals.

Are there plans to enable multiple principals in the credentials file in a
future version? This would be very useful for our site.

To my mind it is a step back, because, as I wrote, it works with
Kerberos4.

Andreas

-- 
Andreas Haupt         E-Mail: ahaupt@ifh.de
 DESY Zeuthen
 Platanenallee 6
 15738 Zeuthen