Chris Hecker <chec...@d6.com> writes: > Right, I will disable the princ when I find out obviously, I just want > the person to not be able to use it as a user princ to get tickets to > other services in the meantime. Does that make sense or am I missing > something?
It makes sense -- I just don't think it's something that currently exists in the KDC's permission model, at least so far as I can tell. Although it's entirely possible I'm missing something. -- Russ Allbery (ea...@eyrie.org) <http://www.eyrie.org/~eagle/> ________________________________________________ Kerberos mailing list Kerberos@mit.edu https://mailman.mit.edu/mailman/listinfo/kerberos