[6568] in Kerberos

home help back first fref pref prev next nref lref last post

DecServer 900 and Kaserver with MITK4 String to Key

daemon@ATHENA.MIT.EDU (Joff Thyer)
Fri Feb 2 09:58:07 1996

From: Joff Thyer <jsthyer@gabriel.uncg.edu>
To: kerberos@MIT.EDU, info-afs@transarc.com
Date: Fri, 2 Feb 1996 09:39:06 -0500 (EST)

Hi Folks,

I have a sticky problem here... I have applied the ANL patches so that my 
AFS kaserver actually stores the users key using the MIT string to key 
function rather than the Andrew string to key.  (thanks Doug for all your 
help)

In testing, I can use a standard kerb 4 'kinit' command and grab 
tickets just like I should be able to.  My standard MIT K4 client program 
seems to work fine.

So now... as my next step, I took one of our test dialup Dec Server 900's 
with NAS Version 1.5, and set its kerberos parameters to point to my 
kaserver.  When I try the authentication, (equivalent of a kinit), it should
work just fine.  (I have had the 900's pointing at a standard MIT KDC and it
works great)

BUT... it does NOT work.  The only thing that I know is that the afs 
kaserver uses a lowercase realm name, so in my wizdom, I have tried both 
cases in the DecServer 900 configuration and it still does not work.

I am totally stumped and only guessing that this is still a realm name 
case problem.  Anyone out there that has done the same with similar 
hardware?

Any ideas? 

--
Joff_Thyer@uncg.edu Systems 
Programmer UNC-Greensboro


home help back first fref pref prev next nref lref last post