kerberos password change in master-slave environment

Mike Friedman mikef at ack.Berkeley.EDU
Wed Mar 24 19:09:59 EST 2004


On Wed Mar 24 16:05:49 2004, Ken Hornstein said:

>>Unfortunately, PREAUTH_FAILED corresponds to the password being deemed
>>incorrect, since we have requires_preauth on all user principals.
> 
> Ever hear of the phrase, "a little knowledge is dangerous"? :-)

I guess that makes me a Weapon of Mass Destruction!

> KRB5_PREAUTH_FAILED is an internal client-side library error.
> 
> KRB5KDC_ERR_PREAUTH_FAILED is returned by the KDC when preauth has failed.

Good.  Then I guess the right thing has been happening all along.

Thanks.

Mike

------------------------------------------------------------------------------
Mike Friedman                             System and Network Security
mikef at ack.Berkeley.EDU                    2484 Shattuck Avenue
1-510-642-1410                            University of California at Berkeley
http://ack.Berkeley.EDU/~mikef            http://security.berkeley.edu
------------------------------------------------------------------------------


More information about the Kerberos mailing list