[8025] in Kerberos

home help back first fref pref prev next nref lref last post

Help --- rlogin -x works one way only

daemon@ATHENA.MIT.EDU (Paul Leyland)
Wed Sep 18 15:11:37 1996

To: kerberos@MIT.EDU
Date: 18 Sep 1996 17:19:03 GMT
From: pcl@sable.ox.ac.uk (Paul Leyland)


I've just installed and set up K5B7 on a DEC Ultrix 4.5 KDC and with
an Ultrix 4.3a client.   This is an experimental setup to enable a few
of us to explore Kerberos and what it might be able to do for us.  The
build and install seemed to go reasonably well.

The present state of play is that I can kinit as myself, pcl@OX.AC.UK,
on the client and then successfully get an encrypted rlogin session to
the KDC.

I cannot get an encrypted session the other way, from the server to the
client.  A transcript of a sample session is:

    % kinit pcl
    Password for pcl@OX.AC.UK: 
    % klist
    Ticket cache: /tmp/krb5cc_ttyp1
    Default principal: pcl@OX.AC.UK

    Valid starting      Expires             Service principal
    18 Sep 96 18:05:54  19 Sep 96 04:05:47  krbtgt/OX.AC.UK@OX.AC.UK
    % whoami
    pcl
    % usr/local/bin/rlogin foo.oucs.ox.ac.uk -x
    foo.oucs.ox.ac.uk: Connection refused
    rlogin: kcmd to host foo.oucs.ox.ac.uk failed - Unknown code ____ 255

foo.oucs.ox.ac.uk is my client machine and that session is running on
the server with an encrypted session from my client.

I believe that I have correctly created a host/foo.oucs.ox.ac.uk
principal and created a /etc/v5srvtab file on the client machine.


Any suggestions as to where I may be going wrong?

Responses by email or follow-up are fine.



Paul
--
Paul Leyland <pcl@oucs.ox.ac.uk>         | Hanging on in quiet desperation is
Oxford University Computing Services     |     the English way.
13 Banbury Road, Oxford, OX2 6NN, UK     | The time is gone, the song is over.
Tel: +44-1865-273200  Fax: 273275        | Thought I'd something more to say.
PGP KeyID: 0xCE766B1F

home help back first fref pref prev next nref lref last post