SSH Ticket forward

Ulrich Weber uweber at epost.de
Tue May 6 05:30:07 EDT 2003


Hello all,

I installed OpenSSH 3.6 with the openssh-3.6.1p2-gssapi-20030430.diff 
patch. Ticket authroization works fine, but not Ticket forwarding.

The SSH client request a forwarded ticket and get it. The SSHD generates 
a Ticket file, but this file doesn't contain the krbtgt.
Any solutions ?

Strange behaviour: linux -> linux sshd and windows2k_sspi -> linux sshd 
doesn't work, but when i use windows2k_MIT -> linux sshd ticket 
forwarding works fine! I'm using heimdal 0.5.2 as kdc.


Greetings
  Ulrich


--LOGS--
May  6 11:22:34 kerberos kdc[319]: TGS-REQ merlin at SAMPLE.NET from 
IPv4:192.168.150.160 for krbtgt/SAMPLE.NET at SAMPLE.NET [forwarded, 
forwardable]
May  6 11:22:34 kerberos kdc[319]: sending 675 bytes to IPv4:192.168.150.160


merlin at tester:~$ /usr/heimdal/bin/klist
Credentials cache: FILE:/tmp/krb5cc_1000_mkgDQZ
         Principal: merlin at SAMPLE.NET

   Issued    Expires    Principal



More information about the Kerberos mailing list