[23814] in Kerberos
Re: Porting k5start to Heimdal
daemon@ATHENA.MIT.EDU (Russ Allbery)
Wed May 4 19:07:52 2005
To: lukeh@padl.com
In-Reply-To: <200505042302.j44N2V2f090944@au.padl.com> (Luke Howard's
message of "Thu, 5 May 2005 09:02:31 +1000")
From: Russ Allbery <rra@stanford.edu>
Date: Wed, 04 May 2005 16:07:12 -0700
Message-ID: <871x8m1tgf.fsf@windlord.stanford.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
Luke Howard <lukeh@padl.com> writes:
> Note that also Heimdal includes the kcm daemon, which can effectively do
> the same thing (acquire credentials using a keytab, and/or keep on
> renewing them).
One thing I'll throw out (maybe as an incentive to get people interested
enough to help!) is that k5start can also run aklog or afslog
automatically on each ticket renewal and, if the right libraries are
available, can create a new PAG to hold those credentials when running a
particular command. Both I just added in the past couple of weeks so that
we could replace an old shell script we used to use called runauth.
> It would be great to see k5start work with Heimdal -- I think I might
> have tried at one point but given up :-)
I've fixed all the trivial compilation problems, but I'm now at the point
where I really need help from someone who has a full Heimdal environment,
since I'm not sure what problems I'm seeing are due to our local mostly
MIT environment and what problems are real problems. I also am not sure
why certain things would be failing. :/
--
Russ Allbery (rra@stanford.edu) <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos