[23986] in Kerberos
Re: Single sign-on with ssh (only unix)
daemon@ATHENA.MIT.EDU (Nathan Ollerenshaw)
Fri Jun 3 01:45:58 2005
In-Reply-To: <tslpsv4xb0c.fsf@cz.mit.edu>
Mime-Version: 1.0 (Apple Message framework v730)
Content-Type: text/plain; charset=US-ASCII; delsp=yes; format=flowed
Message-Id: <D9E03370-9E05-4900-88C6-244F153528AE@valuecommerce.co.jp>
Content-Transfer-Encoding: 7bit
From: Nathan Ollerenshaw <nathan@valuecommerce.co.jp>
Date: Fri, 3 Jun 2005 14:45:11 +0900
To: Sam Hartman <hartmans@mit.edu>
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
On Jun 3, 2005, at 2:30 PM, Sam Hartman wrote:
> gssapidelegatecredentials yes
That doesn't seem to be an option in my openssh?
Starting sshd:/etc/ssh/sshd_config: line 76: Bad configuration
option: GSSAPIDelegateCredentials
Will I need to grab the source RPM and rebuild to get that option? Am
running FC3.
The two machines I am testing between seem to delegate credentials
however; because I can ssh to one, then to the other then back to the
first but not back to the second a second time ... so its working for
2 hops. But is should work for any number of hops right?
Regards,
Nathan.
--
Nathan Ollerenshaw / Systems Engineer
Systems Engineering
ValueCommerce Co., Ltd.
Tokyo Bldg 4F 3-32-7 Hongo Bunkyo-ku Tokyo 113-0033 Japan
Tel. +81.3.3817.8995 Fax. +81.3.3812.4051
mailto:nathan@valuecommerce.co.jp
"It is a mistake to think you can solve any major
problems just with potatoes." - Douglas Adams
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos