openssh and SEAM (Kerberos)

mld12 at uark.edu mld12 at uark.edu
Tue Mar 30 08:09:06 EST 2004


I'm trying to get openssh to work with SEAM(Solaris
Enterprise Authentication Mechanism) on Solaris 9. 
I have a few questions.  Any help would be appreciated.
I am working with openssh 3.8.

1.  First of all, does anyone know if it is possible
to get openssh working with SEAM?

2.  Which options do i need to use when compiling
openssh?  Do i need to use --with-kerberos5=kerbpath
or --with-pam or both?

3.  Which options need to be enabled in the
sshd_config?  KerberosAuthentication? 
GSSAPIAuthentication?

4.  Which options are needed in ssh_config? 
GSSAPIAuthentication yes?  GSSAPIDelegateCredentials
yes?

5.  Does openssh rely on the pam_krb5 module?

6.  Are there any good sources of information
regarding the integration of SEAM and openssh?

I have tried many combinations of these options but
have been unsuccessful so far.  Maybe I'm missing
something.  I've looked at docs.sun.com with no
luck.  I have browsed the mailing list archives at
openssh.org (that's where i got some of the options
listed above) but again, no luck.  
I did download the kerberized telnet, rlogin, and
ftp package from sun, and it works fine.

Any insight would be appreciated.
Thanks in advance for any help provided.

Matthew L. Davis
mld12 at uark.edu




More information about the openssh-unix-dev mailing list