[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: semi-colon taboo?

Andrew Bacchi <bacchi@rpi.edu> writes:

> One user had a semi-colon in his password, and was unable to use the
> kdc.  Removing the ";" from the password cured the problem, repeatable. 
> Is this a known problem?  Are there any other taboo characters?  Thanks.

All characters that are in the ASN.1 GeneralString charset are ok. In
reality anything that is ASCII does't work.

What encryption types/salting was set in the principal ? What was the
client, what kdc where you running ?

I've tested with aes256-cts-hmac-sha1-96, arcfour-hmac-md5, des3-cbc-sha1,
des-cbc-crc. Any clue how to reproduce this would be great.


PGP signature