[32406] in Kerberos
Re: KRB5KRB_AP_ERR_MODIFIED: MIT Kerberos 1.8.1 & arcfour-hmac-md5
daemon@ATHENA.MIT.EDU (Greg Hudson)
Wed Jun 2 18:22:39 2010
From: Greg Hudson <ghudson@mit.edu>
To: "Richard E. Silverman" <res@qoxp.net>
In-Reply-To: <m2wruhany4.fsf@darwin.oankali.net>
Date: Wed, 02 Jun 2010 18:22:34 -0400
Message-ID: <1275517354.2419.798.camel@ray>
Mime-Version: 1.0
Cc: "kerberos@mit.edu" <kerberos@mit.edu>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu
On Wed, 2010-06-02 at 03:33 -0400, Richard E. Silverman wrote:
> After upgrading to MIT Kerberos 1.8.1, I get KRB5KRB_AP_ERR_MODIFIED while
> trying to authenticate to certain devices; so far, a NetApp filer, and
> Windows hosts running BitVise WinSSHD and MS SQL Server (alll part of a
> Windows AD realm).
FYI, I tried reproducing this using MIT code on both ends (a 1.7 KDC and
GSS sample server, and a 1.8 client) and wasn't able to get it to break.
That doesn't rule out a lot of possibilities since I didn't use actual
Windows server components, but it does suggest that the problem might
not be in the crypto layer per se, despite the fact that it works with
DES and not with RC4.
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos