[37696] in Kerberos

home help back first fref pref prev next nref lref last post

Re: KEYRING:persistent and ssh

daemon@ATHENA.MIT.EDU (Russ Allbery)
Wed Sep 21 14:04:01 2016

From: Russ Allbery <eagle@eyrie.org>
To: tseegerkrb <tseegerkrb@gmail.com>
In-Reply-To: <db3e2efa-b07b-8c6b-7c40-913688ea31fa@gmail.com>
	(tseegerkrb@gmail.com's message of "Wed, 21 Sep 2016 08:15:08 +0200")
Date: Wed, 21 Sep 2016 11:03:40 -0700
Message-ID: <87mvj1dtab.fsf@hope.eyrie.org>
MIME-Version: 1.0
Cc: kerberos@mit.edu
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

tseegerkrb <tseegerkrb@gmail.com> writes:

> Thanks for your help. Is my setup so special (kerberos/OpenLDAP/sssd/sshd)
> nobody using it? I think i will ask debian/ubuntu or the openssh
> maintainer for help.

It's sadly quite unusual to use non-FILE ticket caches.  I wish it
weren't, since KEYRING has nice security properties, but it's relatively
new and the rest of the world has definitely not adapted yet.

-- 
Russ Allbery (eagle@eyrie.org)              <http://www.eyrie.org/~eagle/>
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post