CISCO and kerberos

Nikos Nikoleris nikos at ece.ntua.gr
Tue Sep 1 11:39:27 EDT 2009


Nikolay Shopik wrote:
<snip>
> Hi Nikos,
> 
> If I'm not mistaken they don't yet support kerberos for SSH aren't they?
> 

Hey Nikolay,

as far as I know cisco supports ssh with kerberos but not in a
"kerberized" way but in a pam way. I mean that I can login with the
password I have for my kerberos principal like
ssh nikos/admin at switch
but I cannot login if I first acquire the ticket with
kinit nikos/admin
and then
ssh nikos/admin at switch
without entering the password again. I don't know if it is supported on
new versions or other versions other than that we are running: Cisco IOS
Software, C3750 Software (C3750-ADVIPSERVICESK9-M), Version 12.2(40)SE,
RELEASE SOFTWARE (fc3)

-- Nikos



More information about the Kerberos mailing list