question about kdb5_ldap_util destroy and master-key stash file

Will Fiveash William.Fiveash at sun.com
Fri Aug 3 14:03:52 EDT 2007


On Fri, Aug 03, 2007 at 06:11:01AM -0600, Savitha R wrote:
> yes. kdb5_ldap_util destroy should unlink the master-key stash file.
> But I don't seem to see it happening with kdb5_util destroy also.

My bad.  It turns out that "kdb5_util destroy" on Solaris differs from
MIT in that it now unlinks the stash file associated with the realm
being destroyed.  I was assuming this behavior was from MIT since our
code base is very similar to MIT's.  Anyway, I've modified the Solaris
version of "kdb5_ldap_util destroy" to behave like the Solaris version
of kdb5_util.

> -Savitha
> 
> >>> On Fri, Aug 3, 2007 at  2:41 AM, in message <20070802211129.GA8622 at sun.com>,
> Will Fiveash <William.Fiveash at sun.com> wrote: 
> > I've noticed that while "kdb5_util destroy" unlinks the master-key stash
> > file, "kdb5_ldap_util destroy" does not.  Shouldn't kdb5_ldap_util
> > behave similarly to kdb5_util and unlink the master-key stash file?
> 

-- 
Will Fiveash
Sun Microsystems Inc.
Austin, TX, USA (TZ=CST6CDT)



More information about the krbdev mailing list