renaming principals?

Douglas E. Engert deengert at anl.gov
Thu Sep 12 11:00:48 EDT 2002


Luke Howard wrote:
> 
> Depends whether the password is salted with the principal name or
> not.


But you could use the KRB5_KDB_SALTTYPE_SPECIAL salt, so the old salt 
would be sent to the client. We started to do this during a conversion 
for DCE to an MIT KDC, where we wanted to keep the keys, but the realm
name changed. 
  

> 
> -- Luke
> 
> >From: "Klaas Hagemann" <kerberos at northsailor.de>
> >Subject: renaming principals?
> >To: <kerberos at mit.edu>
> >Date: Thu, 12 Sep 2002 10:37:22 +0200
> >
> >Hi,
> >
> >is there any possibility to rename principals without having to enter the
> >password again?
> >We want to do some skript-base renaming.
> >
> >Thanks, Klaas
> >
> >________________________________________________
> >Kerberos mailing list           Kerberos at mit.edu
> >http://mailman.mit.edu/mailman/listinfo/kerberos
> 
> --
> Luke Howard | lukehoward.com
> PADL Software | www.padl.com
> ________________________________________________
> Kerberos mailing list           Kerberos at mit.edu
> http://mailman.mit.edu/mailman/listinfo/kerberos

-- 

 Douglas E. Engert  <DEEngert at anl.gov>
 Argonne National Laboratory
 9700 South Cass Avenue
 Argonne, Illinois  60439 
 (630) 252-5444



More information about the Kerberos mailing list