[32154] in Kerberos
Re: KDC has no support for encryption type
daemon@ATHENA.MIT.EDU (Brian J. Murrell)
Tue Mar 16 22:09:18 2010
To: kerberos@mit.edu
From: "Brian J. Murrell" <brian@interlinx.bc.ca>
Date: Tue, 16 Mar 2010 17:28:46 -0400
Message-ID: <1268774925.23554.114.camel@pc.interlinx.bc.ca>
Mime-Version: 1.0
X-Complaints-To: usenet@dough.gmane.org
In-Reply-To: <874okg9g55.fsf@windlord.stanford.edu>
Content-Type: multipart/mixed; boundary="===============1982709259=="
Errors-To: kerberos-bounces@mit.edu
--===============1982709259==
Content-Type: multipart/signed; micalg="pgp-sha1";
protocol="application/pgp-signature";
boundary="=-T/hpFS4hN2zUnZwjuDh6"
--=-T/hpFS4hN2zUnZwjuDh6
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
On Tue, 2010-03-16 at 13:16 -0700, Russ Allbery wrote:=20
> Add:
>=20
> allow_weak_crypto =3D true
>=20
> to the [libdefaults] section of your krb5.conf file. NFS still requires
> DES keys.
Awesome! Thanx for the quick and concise response!
Having that nugget has led me to
https://bugs.launchpad.net/ubuntu/+source/krb5/+bug/512110 and
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=3D521878 and also
http://www.opinsys.fi/setting-up-nfsv4kerberos-on-ubuntu-10-04-alpha-2-luci=
d-part-6 for anyone else with this problem.
b.
--=-T/hpFS4hN2zUnZwjuDh6
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
iEYEABECAAYFAkuf+A0ACgkQl3EQlGLyuXBZYwCgjmV4btZRekhm13XSjGGzRpBw
zNQAnivTORnQepj2Ujw4KEpPjxxK0G7+
=9G9u
-----END PGP SIGNATURE-----
--=-T/hpFS4hN2zUnZwjuDh6--
--===============1982709259==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos
--===============1982709259==--