[1399] in Kerberos-V5-bugs

home help back first fref pref prev next nref lref last post

success (sort of) with kprop from 950505 BETA5 distribution

daemon@ATHENA.MIT.EDU (Stephen M. Kenton)
Wed May 10 16:44:51 1995

From: "Stephen M. Kenton" <SKENTON@AUS-SERVER.UCS.UOKNOR.EDU>
To: krb5-bugs@MIT.EDU
Date:          Wed, 10 May 1995 15:43:57 -0600 CST

I successfully propogated a data base using kprop/kpropd from the
950505 BETA5 distribution after making a couple of source changes.
In addition to adding a call to krb5_auth_con_setaddrs to kprop I
had to change the third argument of krb5_auth_con_setflags from
KRB5_AUTH_CONTENT_DO_SEQUENCE to 0 which disabled the replay checking.
I don't understand the replay logic well enough to track down what is
wrong at the lower level for sure.  It may be that the fifth argument
to krb5_rd_priv in kpropd.c is NULL.  In any case, with those two
changes the propgation succeeds and entries appear/disappear from the
database on the slave consistent with what was transmitted from the master.

Steve Kenton
skenton@aus-server.ucs.uoknor.edu
(405) 325-6988

home help back first fref pref prev next nref lref last post