MANDATORY-FOR-KDC elements and RFC 4120 josephharfouch at
Wed Sep 17 05:58:58 EDT 2008


RFC 4120 (1.5.1.  Compatibility with RFC 1510) states that the The
ticket-granting service MUST 
reject such elements.  

I can't find in RFC 4120 what error code should be sent back in this case.  Would
the following error code out of RFC 4120 be a good choice, or there a better
error code that is expected in this case ? 
 KDC_ERR_POLICY                        12  KDC policy rejects request



More information about the krbdev mailing list