[7782] in Kerberos

home help back first fref pref prev next nref lref last post

Re: k5b5 rlogind on LINUX

daemon@ATHENA.MIT.EDU (Gary Gaskell)
Thu Aug 15 18:10:01 1996

To: kerberos@MIT.EDU
Date: 15 Aug 1996 08:08:15 GMT
From: gaga@celsius.oz.au (Gary Gaskell)

Dany Said (dany@cyberia.net.lb) wrote:
: Hello,

: I have been facing the same problem that Edward Zawacki is facing.
: I have k5b5 running on a 1.2.13 Linux machine. I have been trying to run the 
: Kerberized rlogin.

: I did the following:
:         Added: klogin stream tcp nowait root /usr/sbin/tcpd /krb5/sbin/krlogind 
: krlogind -k
:              to the inetd.conf.
:         Added: klogin 543/tcp
:              to the services.

:         ark klogin/asterix.byblos.lau.edu.lb
:         xst asterix.byblos.lau.edu.lb klogin

:         Copied the file to the /etc/v5srvtab

: When running the /krb5/bin/rlogin asterix I get the following message:
:         rlogin:kcmd to the host asterix failed - Server not found in Kerberos database
:         trying normal rlogin(/usr/bin/rlogin)

That is because krlogin does not look for the kerberos user of "klogin", 
but instead it looks for the the kerberos principal of "host".  This
feature can be discovered by consulting the ultimate documentation of
behaviour - the code!  ;-).  In fact it is somewhat sensible, as
a number of the rtools can share the same key for the daemon.

This is also documented in some of the useful web pages that people
have posted to this place.


Gary Gaskell

: Any help or comment on the problem is appreciated.

: Dany Said
: Graduate Student
: Lebanese American University
: dany@cyberia.net.lb


--
regards,


Gary Gaskell
Security Software Engineer
CelsiusTech Australia

home help back first fref pref prev next nref lref last post