[krbdev.mit.edu #5349] Proposed implementation of krb5_server_decrypt_ticket_keyblock and krb5_server_decrypt_ticket_keytab

Jeffrey Altman via RT rt-comment at krbdev.mit.edu
Mon Jan 15 15:20:25 EST 2007


Sam Hartman via RT wrote:
> Feedback we got even from AFS users on krbdev suggests that we do not
> want to accept afs-specific code.  I cannot see any reason for the
> keyblock implementation that is not based on artifacts of how AFS is
> deployed today.

This is not AFS specific code.  Its simply a question of how are keys
stored for a service on a particular machine.  For example, on a Windows
system I can easily imagine not wanting to use a keytab file.

I will remove the public definition and the exports for the keyblock
version from the patch and commit it to the head.  Assuming that is ok.

I will then start working on a MEMORY keytab implementation.

Jeffrey Altman





More information about the krb5-bugs mailing list