Re: kadm5.acl "e" permission

Stefan Kania <[email protected]> Fri, 7 Feb 2025 19:07:15 +0100
Newsgroups gmane.comp.encryption.kerberos.general
Organization Stefan Kania
Message-ID <[email protected]>

Am 07.02.25 um 17:07 schrieb Greg Hudson:
> On 2/7/25 08:58, Stefan Kania wrote:
>> in the kadm5.acl the "*" or the "x" gives all permission but not the 
>> permission to extract the principal keys for this it the "e" 
>> permission. Can some please explain to me how can I extract the 
>> principal key if I have the "e" permission. I can't find anything that 
>> explain how to do it.
> 
> The kadmin "ktadd -norandkey" command will extract principal keys to a 
> keytab file without generating new keys as it normally does.
> 
Thank you, that was exactly what I was looking for :-)

________________________________________________
Kerberos mailing list           [email protected]
https://mailman.mit.edu/mailman/listinfo/kerberos
OpenPGP_signature.asc (application/pgp-signature, 236 B)
-----BEGIN PGP SIGNATURE-----

wnsEABYIACMWIQRsT9azWR5AolaZQIFS9tTdG7aKtQUCZ6ZL0wUDAAAAAAAKCRBS9tTdG7aKtUmc
AP944QTGObqRz/LyMjv9aH4YLiU04WPIKwA/eMJZ56WyigEAtuICBOCSBH4KTra3rNKjr+VCqhQk
zWconVhjyAY0yAg=
=hSMQ
-----END PGP SIGNATURE-----