[krbdev.mit.edu #1621] AutoReply: aes enctype not implemented

Ken Raeburn via RT rt-comment at krbdev.mit.edu
Sun Jun 22 02:55:18 EDT 2003


"lha at kth.se via RT" <rt-comment at krbdev.mit.edu> writes:
> If I patch the code to make it use md5 as the checksum instead it works

Well, that's some good news...


Not only is the checksum type not in the table, but we didn't notice
it because we're still always using kdc_req_sumtype value from the
krb5_context even with non-DES encryption keys.  (And
default_ap_req_sumtype and default_safe_sumtype are probably similarly
misused.)

*aarrgh*

I'm out of town tomorrow afternoon.  I'll dig into it when I get back.



More information about the krb5-bugs mailing list