Support for Microsoft Set Password protocol

Douglas E. Engert deengert at
Wed Apr 2 10:27:06 EST 2003

Danilo Almeida wrote:
> Due to the interop issues, wouldn't is be simpler to just to have a
> krb5_ms_set_password()?
> My understanding is that everyone who needs the MS set password
> functionality needs it only to manage Windows domains.  Therefore, they know
> that they are talking to a Windows domain.  Hence, they want to make a call
> that only does the MS thing.
> If we want API cleanliness, we could have a krb5_set_password that takes a
> flag of what flavor of set password to use.  For now, the only flavor would
> be the MS flavor.  If we can eventually do a negotiate, we can have a
> negotiate flavor.

Why not add a flag on the krb5.conf for each realm indicating which protocol
to use. The user wants the same change password appliation to work against
multiple realms.  

> - Danilo
> _______________________________________________
> krbdev mailing list             krbdev at


 Douglas E. Engert  <DEEngert at>
 Argonne National Laboratory
 9700 South Cass Avenue
 Argonne, Illinois  60439 
 (630) 252-5444

More information about the krbdev mailing list