[3702] in Kerberos-V5-bugs
Re: [krbdev.mit.edu #1278] No prompter interface for krb5_get_init_creds_keytab
daemon@ATHENA.MIT.EDU (Marc Horowitz)
Tue Dec 17 13:07:12 2002
From: Marc Horowitz <marc@mit.edu>
To: rt-comment@krbdev.mit.edu
Cc: krb5-prs@mit.edu
In-Reply-To: "Ken Hornstein via RT"'s message of "Tue, 17 Dec 2002 11:55:43 -0500 (EST)"
Message-ID: <t5365ts4j26.fsf@horowitz-m1.mit.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Errors-To: krb5-bugs-admin@mit.edu
Date: 17 Dec 2002 13:05:53 -0500
"Ken Hornstein via RT" <rt-comment@krbdev.mit.edu> writes:
>> I discovered recently that the API krb5_get_init_creds_keytab doesn't
>> take a prompter argument. This makes it difficult to do things like
>> hardware preauthentication using a key stored in a keytab.
>>
>> Any comments?
Why do you think you need this? The idea of getting initial creds
from a keytab is that a daemon or other automated task can act as a
kerberos client without user interaction. If you require user
interaction, why aren't you just using a password?
Marc
_______________________________________________
krb5-bugs mailing list
krb5-bugs@mit.edu
http://mailman.mit.edu/mailman/listinfo/krb5-bugs