Implementaion of KCM funtionality for MIT Kerberos

Rajasekaran Nagarajan rnagarajan at
Mon Nov 14 23:22:40 EST 2005

Hi Russ:

I had a look at kstart and found that it does not allow having a single
root level process taking care of the renewal of all the user tickets.
Also, it does not change the system principal password, when it

Regards - Raj
>>> Russ Allbery <rra at> 11/12/05 12:22 am >>> 
Rajasekaran Nagarajan <rnagarajan at> writes:

> We are planning to implement KCM (present in Heimdal) functionality
> MIT.

> About KCM...
> Luke Howard added KCM (Kerberos Credential Manager) to Heimdal.
> KCM is a credential caching daemon that provides these features,
> -  Acquiring the tickets for the system (workstation) principal
> the start- up
> -  Changing the system principal password
> -  Automatically renewing the tickets

> I would appreciate your comments on having this for MIT.

Not that this is completely the same thing, but you may want to take a
look at:


before doing a lot of work and see if that solves your immediate

Russ Allbery (rra at            

More information about the krbdev mailing list