[19130] in Kerberos

home help back first fref pref prev next nref lref last post

key salting and kerberos v5

daemon@ATHENA.MIT.EDU (Calimer0)
Sun Apr 27 19:50:17 2003

From: cryos98@yahoo.com (Calimer0)
Date: 27 Apr 2003 16:39:00 -0700
Message-ID: <3e217f40.0304271539.c448335@posting.google.com>
To: kerberos@MIT.EDU
Errors-To: kerberos-bounces@mit.edu

from kerberos FAQ 2.0:

> In Kerberos 5 the complete principal name (including the realm) is used as the salt

but listing principals properties with kadmin what I see is:

[...]
Key: vno 1, triple DES cbc mode with HMAC/sha1, no salt
Key: vno 1, DES cbc mode with CRC-32, no salt
[...]

I thought that key salting was the default behaviour, now:
- I was wrong, key salting is not active by default and must be someway turned on 
- I turned off key salting (please explain me how I did it..! :)
- ??

I have installed MIT kerberos v 1.2.6
can anybody help?
thanks in advance

mark
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post