[krbdev.mit.edu #2110] MIT KDC fails to handle unknown padata

Sam Hartman via RT rt-comment at krbdev.mit.edu
Wed Feb 11 19:44:38 EST 2004


>>>>> "Douglas" == Douglas E Engert <deengert at anl.gov> writes:


    Douglas> If preauth is required, a krb-error SHOULD be sent saying
    Douglas> which preauths can be used.

That's not how Kerberos works.  Se section 2 of
draft-ietf-krb-wg-preauth-framework-00.txt for a discussion.



More information about the krb5-bugs mailing list