Adding principal from client. Is the password exposed ?

Use Nas usenas at
Thu Aug 12 09:04:05 EDT 2010

I am trying to add the principals from the kerberos kadmin client using
addprinc command. How does the "password" is communicated to KDC from the
client. I tried iptrace and found that there is no "plain text"  password
which is being send. So, what encryption is being used and how is it
decrypted on KDC ?


More information about the krbdev mailing list