Replay cache extension design issue

Nicolas Williams Nicolas.Williams at
Tue Jan 13 12:17:49 EST 2009

On Tue, Jan 13, 2009 at 11:58:22AM -0500, ghudson at wrote:
> My first idea for a band-aid is to make the extension records include
> the client and server principle strings, so that they stand alone
> (superceding, rather than augmenting, the old-style records which are
> also written out).  Of course, that requires cramming the client
> principal string, server principal string, and hash string into the
> server principal field of a record.  Maybe someone else has a more
> elegant idea.

That's fine with me.

More information about the krbdev mailing list