OpenSSH protocol version 2 doesn't support Kerberos authentication

From: Felipe Alfaro Solana (felipe_alfaro@linuxmail.org)
Date: Sun Apr 20 2003 - 17:40:27 EST


Hi!

This is simply an informative message.

I have just deployed Kerberos authentication on my LAN. However, I have
been smashing my head against a wall everytime I tried to configure and
use OpenSSH with Kerberos authentication.

Such situation led me to browse the OpenSSH sources and, to my dismay, I
have found that Kerberos V5 authentication is *not* implemented for
protocol version 2, only in protocol version 1. Just take a look at
sshconnect1.c and sshconnect2.c to check.

So I reconfigured all my RHL9 boxes to just use Protocol 1. Now, OpenSSH
and Kerberos work nicely and it's just beautiful to be able to log on at
my laptop and being able to ssh to any machine in my LAN without
supplying a password. This is Unix single-sign-on came true...

-- 
Please AVOID sending me WORD, EXCEL or POWERPOINT attachments.
See http://www.fsf.org/philosophy/no-word-attachments.html
Linux Registered User #287198

- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/



This archive was generated by hypermail 2b29 : Wed Apr 23 2003 - 22:00:28 EST