[8069] in Kerberos

home help back first fref pref prev next nref lref last post

K5B7, 2 keys for 1 principal?

daemon@ATHENA.MIT.EDU (David Passmore)
Fri Sep 20 09:58:01 1996

To: kerberos@MIT.EDU
Date: 20 Sep 1996 13:40:35 GMT
From: dpassmor@revelation.cst.digex.net (David Passmore)

I'm using Kerberos 5 beta 7. Whenever I add a new principal using kadmin, it
adds it with 2 keys. getprinc <principal> returns:

Number of keys: 2
Key: vno 1, DES cbc mode with CRC-32, Version 4
Key: vno 1, DES cbc mode with CRC-32, no salt
Attributes:
Policy: [none]

The supported encryption types from kdc.conf look correct:

supported_enctypes = des-cbc-crc:v4 des-cbc-crc:normal des:normal des:v4

A similarly configured system is doing what I would assume to be the correct
behavior, and only adding 1 key with no salt (des-cbc-crc:v4). Does anyone
have any ideas as to why it would want to add two keys for a new principal?

Thanks,
	David

home help back first fref pref prev next nref lref last post