Re: Bug in 1.5.1 KDC is session key selection
Andreas Haupt <[email protected]>
| Newsgroups | gmane.comp.encryption.kerberos.heimdal.general |
|---|---|
| Organization | DESY |
| Message-ID | <[email protected]> |
Hi Jeffrey, On Thu, 2012-01-19 at 07:38 -0500, Jeffrey Altman wrote: > Andreas: > > That is a bug in OpenAFS that has been fixed in OpenAFS. > Heimdal already fixed its bug and 1.5 is performing the selection > correctly in the absence of a specific request by the application. > Heimdal should not be issuing session keys with the weakest key type > when the application is requesting that the KDC use its best judgment. OK, so what you are saying is that it was bug in Heimdal version 1.2.1 to work fine with broken klog.krb5 clients? Do I understand you correctly? Thanks Andreas -- | Andreas Haupt | E-Mail: [email protected] | DESY Zeuthen | WWW: http://www-zeuthen.desy.de/~ahaupt | Platanenallee 6 | Phone: +49/33762/7-7359 | D-15738 Zeuthen | Fax: +49/33762/7-7216