Common keytab file for all the application servers - Is itpossible???

Markus Moeller huaraz at moeller.plus.com
Mon Jan 2 07:03:35 EST 2006


If you use the same keytab, the compromise of one device means you loose the 
security of all devices as the keytab can be used to sniff the traffic.

Markus

""Barbat, Calin"" <c.barbat at osram.de> wrote in message 
news:60DE0C5FDA5A594EAB0F71425A0A3CEF03B996 at exc-mch01.mch.osram.de...
> Hi Sandy,
>
> of course you can use the same keytab on every device. At least, I can't
> see why it should not be possible - technically
> speaking. You should only consider if you want this scenario - all 100
> devices connecting as the same user.
>
> Try it with 2 devices first - copy the same keytab to both of them, then
> interact with them, it should work fine.
>
> Best regards,
>
> - Calin.
>
> ________________________________________________
> Kerberos mailing list           Kerberos at mit.edu
> https://mailman.mit.edu/mailman/listinfo/kerberos
> 





More information about the Kerberos mailing list