Implementaion of KCM funtionality for MIT Kerberos

Rajasekaran Nagarajan rnagarajan at novell.com
Mon Nov 14 23:22:40 EST 2005


Hi Russ:

I had a look at kstart and found that it does not allow having a single
root level process taking care of the renewal of all the user tickets.
Also, it does not change the system principal password, when it
expires.

Thanx...
Regards - Raj
 
>>> Russ Allbery <rra at stanford.edu> 11/12/05 12:22 am >>> 
Rajasekaran Nagarajan <rnagarajan at novell.com> writes:

> We are planning to implement KCM (present in Heimdal) functionality
for
> MIT.

> About KCM...
> Luke Howard added KCM (Kerberos Credential Manager) to Heimdal.
> KCM is a credential caching daemon that provides these features,
> -  Acquiring the tickets for the system (workstation) principal
during
> the start- up
> -  Changing the system principal password
> -  Automatically renewing the tickets

> I would appreciate your comments on having this for MIT.

Not that this is completely the same thing, but you may want to take a
look at:

    <http://www.eyrie.org/~eagle/software/kstart/>

before doing a lot of work and see if that solves your immediate
problem.

--  
Russ Allbery (rra at stanford.edu)            
<http://www.eyrie.org/~eagle/>



More information about the krbdev mailing list