[2035] in Kerberos

home help back first fref pref prev next nref lref last post

Re: Help w/getauthuid & Kerberos

daemon@ATHENA.MIT.EDU (Dr Michael Ashley)
Tue Jul 7 21:47:44 1992

Date: Wed, 8 Jul 1992 00:17:39 GMT
From: mcba@aix06.csd.unsw.oz.au (Dr Michael Ashley)
To: kerberos@shelby.Stanford.EDU

In article <GSHAPIRO.92Jul6143503@sparkplug.wpi.edu>, gshapiro@sparkplug.wpi.edu (Gregory Neil Shapiro) writes:
> 
> I've hit a stone wall with trying to get auth information with
> kerberos.  No matter what I try, the getauthuid() call returns a NULL
> structure.  I am running this as root with DEC's version of kerberos
> running and using Security Level UPGRADE.  Both the auth information
> and password database are served by BIND using Kerberos
> authentication.  It finds the password information fine but can't get
> to the auth information.  The only local account in the passwd file
> and /etc/auth* is root and running this program asking for root
> information works fine.  It is when I ask for BIND auth data it fails.
> 
> Any help would be appreciated.
I had the same problem. It appears that getauthuid does not work with UPGRADE
or ENHANCED security modes with ULTRIX (despite what the man pages say). You
will also find that  "nslookup" will not be able to read the auth database.
The solution is to use "authenticate_user" (have a look in 
"man authenticate_user").

Good luck!
Michael Ashley mcba@newt.phys.unsw.oz.au



home help back first fref pref prev next nref lref last post