question about MIT kpasswd and RPCSEC_GSS

Tom Yu tlyu at
Wed Jan 21 17:22:43 EST 2015

Will Fiveash <will.fiveash at> writes:

> When talking to a older Solaris KDC that only supports the RPCSEC_GSS
> protocol for change password request, will the current MIT kpasswd
> command just work or does it require some non-default configuration
> (some parameter set in krb5.conf)?

My recollection is that we used to have a different kpasswd client
program (dating back to the OV*Secure contribution, maybe) that did
speak the kadm5 RPC protocol, but removed it.  Now we only have a
kpasswd client that speaks the kpasswd protocol.

More information about the Kerberos mailing list