question about MIT kpasswd and RPCSEC_GSS

2015-01-21 Thread Will Fiveash
When talking to a older Solaris KDC that only supports the RPCSEC_GSS protocol for change password request, will the current MIT kpasswd command just work or does it require some non-default configuration (some parameter set in krb5.conf)? -- Will Fiveash Oracle Solaris Software Engineer

Re: question about MIT kpasswd and RPCSEC_GSS

2015-01-21 Thread Tom Yu
Will Fiveash writes: > When talking to a older Solaris KDC that only supports the RPCSEC_GSS > protocol for change password request, will the current MIT kpasswd > command just work or does it require some non-default configuration > (some parameter set in krb5.conf)? My recollection is that we

Re: question about MIT kpasswd and RPCSEC_GSS

2015-01-21 Thread Will Fiveash
On Wed, Jan 21, 2015 at 05:22:43PM -0500, Tom Yu wrote: > Will Fiveash writes: > > > When talking to a older Solaris KDC that only supports the RPCSEC_GSS > > protocol for change password request, will the current MIT kpasswd > > command just work or does it require some non-default configuration

Re: question about MIT kpasswd and RPCSEC_GSS

2015-01-21 Thread Tom Yu
Will Fiveash writes: > Thanks, I was looking through some older notes I made about this and the > code and felt I had entered a maze of twisty passages that all looked > alike. Anyway (to make sure I'm clear) it's my understanding that MIT > back in 1.4 added support for kadmin/kadmind communica