FC4, ssh, kerberos 5 and TGT passing

Tony Heaton theaton at lanl.gov
Fri Feb 24 23:19:59 UTC 2006


WC,

Yes, all boxes can talk to the kdc. Also, this is not for AFS.  I have
an SSH-1.99-OpenSSH_3.6.1p2 sshd server and ticket passing works.  I'm
upgrading my machines and the new sshd uses gssapi and now ticket
passing doesn't seem to work the same.

Thanks


On Fri, 2006-02-24 at 17:27 -0500, Chasecreek Systemhouse wrote:
> On 2/24/06, Tony Heaton <theaton at lanl.gov> wrote:
> > Hello,
> >
> > I searched the archives, and didn't find anything on this. I have
> > installed FC4, ssh-1.99-OpenSSH_4.2 and krb 1.4.1-5.  The only thing
> > that is not working is tgt passing.  I kinit on box A then ssh to box B.
> > When I do a klist on box B, there is no ticket.  Any help would be
> > appreciated.
> 
> 
> Do all boxes in question have access to the kinit database -- so each
> can actually access the ticket?
> 
> An overview of the various databases -
> http://www.acf.bnl.gov/UserInfo/Software/Kerberos5/AuthInfrastructure.shtml
> 
> --
> WC Jones -- http://youve-reached-the.endoftheinternet.org/
> 
-- 
Tony Heaton
CCN-9
(505)667-9015
Pager (505)996-3184
theaton at lanl.gov

- "If you do nothing, they'll win"

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20060224/761f071a/attachment-0002.bin 


More information about the users mailing list