[2466] in Kerberos_V5_Development
Re: Password expiration via a preauth mechanism
daemon@ATHENA.MIT.EDU (Marc Horowitz)
Wed Jul 30 16:43:36 1997
To: Sam Hartman <hartmans@MIT.EDU>
Cc: Ken Hornstein <kenh@cmf.nrl.navy.mil>, krbdev@MIT.EDU
From: Marc Horowitz <marc@cygnus.com>
Date: 30 Jul 1997 16:37:33 -0400
In-Reply-To: Sam Hartman's message of 30 Jul 1997 14:42:49 -0500
Sam Hartman <hartmans@MIT.EDU> writes:
>> I mean that the key-expiration time in kdc-rep (Section 5.4.2)
>> should be filled in with the minimum of password expiration and
>> principal expiration in any KDC that warns the client about
>> password expiration using some other mechanism.
KerbNet does this. I seem to remember that there was a related bug in
the kdc, but I don't recall what it was.
Marc