[Bug 324] New: privsep break KRB4 auth, KRB4 TGT forwarding and AFS token forwarding

bugzilla-daemon at mindrot.org bugzilla-daemon at mindrot.org
Sun Jun 30 09:17:46 EST 2002


http://bugzilla.mindrot.org/show_bug.cgi?id=324

           Summary: privsep break KRB4 auth, KRB4 TGT forwarding and AFS
                    token forwarding
           Product: Portable OpenSSH
           Version: -current
          Platform: All
        OS/Version: All
            Status: NEW
          Severity: normal
          Priority: P2
         Component: sshd
        AssignedTo: openssh-unix-dev at mindrot.org
        ReportedBy: jan.iven at cern.ch


Since all of KRB4/KRB5 authentication (in protocol 1), TGT and AFS token
forwarding are priviledged operations, all fail with privsep.

The attached patch seems to fix this at least for KRB4 auth, KRB4 TGTs and AFS
tokens (cannot try KRB5 here).
Please review and consider for future inclusion.

Thanks,
Jan



------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.



More information about the openssh-unix-dev mailing list