wrong key is generated by krb5_c_string_to_key

Robbie Harwood rharwood at redhat.com
Fri Jun 2 13:34:29 EDT 2017


Ashi1986 <vermaashish_mca at hotmail.com> writes:

> Hi All ,
>
> This is my setup .
>
> windows 8.1 64 bit
> windows 2012 R2 server AD and KDC .
> BS2000 with MIT kerberos 1.13.2
>
> In case of encryption type RC4-HMAC, AES128-SHA1 and AES256-SHA1, It is
> noticed that keys generated from the password by using the function
> [lib/crypto/krb/string_to_key.c\*krb5_c_string_to_key*] is different from
> the key generated with the same password with KTPASS command.

Is this potentially related to the string-to-key fixes in
89ce6420832858950271858e7c6e1a2eefebc683 ?

It might be worth trying with a version that includes that commit.

thanks,
--Robbie
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
Url : http://mailman.mit.edu/pipermail/kerberos/attachments/20170602/c443f963/attachment.bin


More information about the Kerberos mailing list