[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Management of heimdal kerberos with ldap



I'm trying to make a external php script to add, remove and change password of kerberos 
Principals stored in a openLdap server.

I try to create a valid SHA1 key to use with kerberos, for example, from the keytab, i have:
# ktutil --verbose list --keys
FILE:/etc/krb5.keytab:
...
2  des3-cbc-sha1  alex@OFMIN.COM                 2005-06-23 
7c64d54af8984afdd06bc45e0434b30d58528ca2d62aba15
...

But no combination of password (is "123456"), realm and name give me the same key.

I try some tools like sha1sum and mhash, but i don't have luck in it.




-- 
_________________________________________________________________________________________________________
Alejandro Escanero Blanco
Administrador Sistemas
Centro Europeo De Congresos
Tel. +34 952058050
e-mail: alejandro.escanero@chlgrupo.com
_________________________________________________________________________________________________________

Este correo electrónico y, en su caso, cualquier fichero anexo al mismo, contiene 
información de carácter confidencial
+exclusivamente dirigida a su destinatario o destinatarios.
Queda prohibida su divulgación, copia o distribución, total o parcial, a terceros sin la 
previa autorización escrita del
+remitente.
En caso de haber recibido este correo electrónico por error, se ruega notifíquese 
inmediatamente esta circunstancia mediante
+reenvío a la dirección electrónica del remitente y borre el mensaje original junto con 
sus ficheros anexos, sin grabarlos
+total o parcialmente.

This electronic mail and whatever files are attached thereto, contain confidential 
information solely and exclusively for
+the addressee or addressees.
Its total or partial propagation, reproduction and distribution to third parties is 
strictly forbidden without prior written
+authorization by the sender.
In the event of erroneous receipt of this electronic mail, kindly advise the sender 
immediately by forwarding the message to
+sender, and erase the original message together with attached files, if any.
Please do not copy, totally or partially, the contents of this electronic mail.
Thank you for your cooperation.