[Bug 928] Kerberos/GSSAPI authentication does not work with multihomed hosts

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Mon Mar 11 23:42:56 EST 2013


https://bugzilla.mindrot.org/show_bug.cgi?id=928

--- Comment #28 from jotones at hotmail.com ---
Hi, 

We are using IBM NAS Kerberos implementation. It is a MIT derived
version unfortunatelly not upgraded to this MIT version.

Anyway have you tried it? I have dealed with this issue several years
ago and I have to review it but I think that it is sshd whot is not
accepting it. 

The Kerveros server side is reponsible to check the user credentials
not the underlying Kerberos software. Sshd adds a extra check denying
(almost in our case) access to the users who has not the hostname
kerberos principal ticket.

Thanks for your response.

José Luis

-- 
You are receiving this mail because:
You are the assignee for the bug.
You are watching someone on the CC list of the bug.
You are watching the reporter of the bug.


More information about the openssh-bugs mailing list