cross realm : decrypt integrity check failed

Dave Botsch botsch at cnf.cornell.edu
Wed Nov 8 15:49:56 EST 2006


> 
> Well, remember that with cross-realm, you're really dealing with _keys_,
> not passwords.  I think what you were running into was the fact that
> the keys didn't match, even though the passwords did.

Which is interesting as the same key (well, the same enc/salt type "created"
with the same password) was present -- only key on the realmA kdc and the 3rd
of three listed via a getprinc on the realmB kdc.

> 
> --Ken
> ________________________________________________
> Kerberos mailing list           Kerberos at mit.edu
> https://mailman.mit.edu/mailman/listinfo/kerberos

-- 
********************************
David William Botsch
Programmer/Analyst
CNF Computing
botsch at cnf.cornell.edu
********************************



More information about the Kerberos mailing list