[krbdev.mit.edu #6507] kdb5_util update_princ_encryption uses latest mkey instead of active mkey

william.fiveash@sun.com via RT rt-comment at krbdev.mit.edu
Mon Jun 1 20:12:07 EDT 2009


Another bug which Tom found, and I've investigated a little bit:

  1. kdb5_util add_mkey -s
  2. kdb5_util update_princ_encryption

The second command updates all of the principles to the new key even
though it hasn't been activated with use_mkey yet.



More information about the krb5-bugs mailing list