OpenSSH and KerbV

Phil Dibowitz phil at ipom.com
Fri May 16 11:40:32 EST 2003


On Fri, May 16, 2003 at 02:23:42AM +0100, Simon Wilkinson wrote:
> The Kerberos V support that ships with current OpenSSH versions is only
> for ssh protocol 1. You can use this by forcing your connection to use
> protocol version 1 with the '-1' flag.
> 
> If you want Kerberos V support for protocol version 2, then you need
> the patches available from
> http://www.sxw.org.uk/computing/patches/openssh.html

Thanks.

> This is a hang over from the days when 'Kerberos' meant Kerberos IV.
> Kerberos V can do ticket forwarding without AFS. Both the bundled stuff,
> and my patches support ticket forwarding.

Hrm, really? I loose my tickets when I SSH from one host to the next.
Is this also only an ssh1 thing?

-- 
Phil Dibowitz                             phil at ipom.com
Freeware and Technical Pages              Insanity Palace of Metallica
http://www.phildev.net/                   http://www.ipom.com/

"They that can give up essential liberty to obtain a little temporary
safety deserve neither liberty nor safety."
 - Benjamin Franklin, 1759




More information about the openssh-unix-dev mailing list