[8025] in Kerberos
Help --- rlogin -x works one way only
daemon@ATHENA.MIT.EDU (Paul Leyland)
Wed Sep 18 15:11:37 1996
To: kerberos@MIT.EDU
Date: 18 Sep 1996 17:19:03 GMT
From: pcl@sable.ox.ac.uk (Paul Leyland)
I've just installed and set up K5B7 on a DEC Ultrix 4.5 KDC and with
an Ultrix 4.3a client. This is an experimental setup to enable a few
of us to explore Kerberos and what it might be able to do for us. The
build and install seemed to go reasonably well.
The present state of play is that I can kinit as myself, pcl@OX.AC.UK,
on the client and then successfully get an encrypted rlogin session to
the KDC.
I cannot get an encrypted session the other way, from the server to the
client. A transcript of a sample session is:
% kinit pcl
Password for pcl@OX.AC.UK:
% klist
Ticket cache: /tmp/krb5cc_ttyp1
Default principal: pcl@OX.AC.UK
Valid starting Expires Service principal
18 Sep 96 18:05:54 19 Sep 96 04:05:47 krbtgt/OX.AC.UK@OX.AC.UK
% whoami
pcl
% usr/local/bin/rlogin foo.oucs.ox.ac.uk -x
foo.oucs.ox.ac.uk: Connection refused
rlogin: kcmd to host foo.oucs.ox.ac.uk failed - Unknown code ____ 255
foo.oucs.ox.ac.uk is my client machine and that session is running on
the server with an encrypted session from my client.
I believe that I have correctly created a host/foo.oucs.ox.ac.uk
principal and created a /etc/v5srvtab file on the client machine.
Any suggestions as to where I may be going wrong?
Responses by email or follow-up are fine.
Paul
--
Paul Leyland <pcl@oucs.ox.ac.uk> | Hanging on in quiet desperation is
Oxford University Computing Services | the English way.
13 Banbury Road, Oxford, OX2 6NN, UK | The time is gone, the song is over.
Tel: +44-1865-273200 Fax: 273275 | Thought I'd something more to say.
PGP KeyID: 0xCE766B1F