Hi Everyone,

I've a question I prefer to ask before starting to test with the environment to 
proceed in a correct way.
We have a Kerberos LDAP database backend  and I was wondering which is the 
correct procedure to add a new enctype to an existing and populated database 
and REALM.
Currently we have two supported and default enctypes for tkt and tgs. However, 
now we have an application that does not support our current supported enctypes 
so we have to add a new enctype.

Which is the correct procedure to add this enctype and to generate an 
additional key for this enctype for each principal involved?

I suppose that the enctype used will be the strongest one of the supported 
enctype keys existing for that principal.

Thank you so much.
Regards.





[cid:image001.gif@01D7F266.1D932ED0]

Dario Garcia
Díaz-Miguel
GGCS-SES Unit
GGCS SKMF Infrastructure Division

GMV
C\ de Isaac Newton, 11
28760, Tres Cantos, Madrid
España
+34 918 07 21 00
+34 918 07 21 99
www.gmv.com <http://www.gmv.com/>
[cid:image002.png@01D7F266.1D932ED0]<http://www.facebook.com/infoGMV>

[cid:image003.png@01D7F266.1D932ED0]<http://www.twitter.com/infoGMV_es>

[cid:image004.png@01D7F266.1D932ED0]<http://www.youtube.com/infoGMV>

[cid:image005.png@01D7F266.1D932ED0]<https://www.linkedin.com/company/gmv>

[cid:image006.png@01D7F266.1D932ED0]<http://www.gmv.com/en/RSS>


[cid:image007.png@01D7F266.1D932ED0]<http://www.gmv.com/blog_gmv/language/en/>





P Please consider the environment before printing this e-mail.
________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

Reply via email to